Are you suggesting that Sentinel or any SOC product integrated with Defender can never provide a complete picture for incident investigations, necessitating a check in the Defender portal for related incidents?
It’s possible but what MS team trying to do is eliminate switch between portals and bring most of the Sentinel features directly into unified XDR portal.
Are you suggesting that Sentinel or any SOC product integrated with Defender can never provide a complete picture for incident investigations, necessitating a check in the Defender portal for related incidents?
It’s possible but what MS team trying to do is eliminate switch between portals and bring most of the Sentinel features directly into unified XDR portal.