Getting started with the Microsoft Unified Security Operations Platform

Поділитися
Вставка
  • Опубліковано 2 жов 2024

КОМЕНТАРІ • 5

  • @polonia66
    @polonia66 6 місяців тому

    Thanks for video. Logs in advanced threat hunting option in defender are limited to 30 days? Or microsoft extended as new tables from sentinel appear?

  • @B4sicUser
    @B4sicUser 6 місяців тому

    Greetings and thank you for all your great content. I've really been looking forward to the unification of Defender Portal and Sentinel but once connected I felt there is alot missing still. Playbooks for example. We use those extensively to enrich our entities in Sentinel Incidents but I have yet to find a way to do that in the Defender Portal

  • @Knalkop123
    @Knalkop123 6 місяців тому

    How does this work when you use Lightouse to "see" multiple tenants?

    • @jeroenniesen6181
      @jeroenniesen6181 6 місяців тому +1

      Hi! The workspace is still usable from within the Azure Portal. The unified security operations platform only supports a single workspace today.
      In case you also need to manage Defender for Endpoint in a multi tenant scenario; I would suggest to have a look at M365 Lighthouse

  • @CatSmiling
    @CatSmiling 6 місяців тому

    first