diff --git a/salt/soc/defaults.yaml b/salt/soc/defaults.yaml index c0e01f80d..0bc7a51a4 100644 --- a/salt/soc/defaults.yaml +++ b/salt/soc/defaults.yaml @@ -1532,7 +1532,7 @@ soc: agentMapping: Orchestrator: Claude Sonnet Investigator: Claude Sonnet - Detection Engineer: Claude Sonnet + DetectionEngineer: Claude Sonnet onionconfig: saltstackDir: /opt/so/saltstack bypassEnabled: false diff --git a/salt/soc/soc_soc.yaml b/salt/soc/soc_soc.yaml index f09317f39..4a946f6d1 100644 --- a/salt/soc/soc_soc.yaml +++ b/salt/soc/soc_soc.yaml @@ -786,7 +786,7 @@ soc: Investigator: description: This agent investigates alerts, explains events and records, and hunts through event data. It can also acknowledge alerts and escalate to cases. global: True - Detection Engineer: + DetectionEngineer: description: This agent manages detections and their overrides, including tuning noisy rules and authoring rule content. global: True client: