M365

EDR/XDR/SIEM – Microsoft Defender portfolio, Microsoft Azure Sentinel

m365_ntb_new

EDR/XDR/SIEM – Microsoft Defender portfolio, Microsoft Azure Sentinel

Content of this issue:

  • Antivirus
  • Antimalware
  • Vulnerability scanner
  • Web filtering
  • Inventory (SW, endpoints)
  • Hunting/Investigation
  • Threat Analytics
  • Alarms/Incidents
  • Cloud/hybrid scenarios
  • Cyber Security Law, NIS 1., NIS 2.0
  • Security Configuration Framework
  • Comparison with current solution
    - SWOT analyze
    - Security scoring
    - Exposure score
    - Vulnerability mng.
  • SIEM – Microsoft Sentinel
    - Implementation
    - Automation rules
    - Custom rules
    - 3rd party products connection
    - Optimalization of Azure source
    - L1, L2 Automation and operation support
    - L3 – Forensic investigation
  • Implementation in line with customer „cloud” maturity
  • Costs optimalization