<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>admin &#8211; Kloudynet &#8211; Your trusted partner for Cloud Security and Compliance</title>
	<atom:link href="https://kloudynet.com/author/admin/feed/" rel="self" type="application/rss+xml" />
	<link>https://kloudynet.com</link>
	<description>Leading Microsoft Security Partner &#124; Identity, Data, Cloud &#38; AI Security Experts</description>
	<lastBuildDate>Fri, 04 Feb 2022 04:00:52 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.3</generator>
	<item>
		<title>Modern XDR + SOC using Microsoft Sentinel</title>
		<link>https://kloudynet.com/modern-xdr-soc-using-azure-sentinel/</link>
					<comments>https://kloudynet.com/modern-xdr-soc-using-azure-sentinel/#respond</comments>
		
		<dc:creator><![CDATA[admin]]></dc:creator>
		<pubDate>Tue, 01 Dec 2020 14:54:10 +0000</pubDate>
				<category><![CDATA[Cybersecurity]]></category>
		<guid isPermaLink="false">https://www.kloudynet.com/?p=679</guid>

					<description><![CDATA[Microsoft recently announced its new approach with Extended Detection and Response (XDR) to deliver intelligent, automated, and integrated security across domains to help defenders connect seemingly disparate alerts and get ahead of attackers. At the same time, Microsoft announced its<a href="https://kloudynet.com/modern-xdr-soc-using-azure-sentinel/">...[...]</a>]]></description>
										<content:encoded><![CDATA[<p><span style="font-family: Segoe UI; font-size: 12pt;">Microsoft recently announced its new approach with <a href="https://www.microsoft.com/security/blog/2020/09/22/microsoft-unified-siem-xdr-modernize-security-operations/"><span style="color: blue; text-decoration: underline;">Extended Detection and Response (XDR)</span></a> to deliver intelligent, automated, and integrated security across domains to help defenders connect seemingly disparate alerts and get ahead of attackers. At the same time, Microsoft announced its unique approach for a Modern SOC by <a href="https://www.microsoft.com/en-us/security/business/threat-protection"><span style="color: blue; text-decoration: underline;">integrating SIEM and XDR</span></a> solutions together. Microsoft offers its SIEM and SOAR capabilities with their new serverless offering which is Microsoft Sentinel. I did write in detail about Microsoft Sentinel in my <a href="https://kloudynet.com/why-azure-sentinel-should-be-your-soar-and-siem-solution/"><span style="color: blue; text-decoration: underline;">last article</span></a>.<br />
</span></p>
<p><span style="font-family: Segoe UI; font-size: 12pt;">Based on the customer feedback from the field, we realized that there was a pressing need to bring in all the Microsoft Security threat detection solutions under one roof. The below reference architecture provides a complete understanding of various Microsoft Security solutions (XDR + SIEM) and their native as well as third party solution integrations. The architecture also includes a CISO dashboard developed by Kloudynet to provide full visibility across all the security products, multiple cloud platforms (Azure, AWS, GCP), and the organization&#8217;s security posture.<br />
</span></p>
<p style="text-align: center;"><img fetchpriority="high" decoding="async" class="col-md-12 wp-image-783 size-medium aligncenter" src="https://kloudynet.com/wp-content/uploads/2022/02/Kloudynet_Microsoft-Modern-XDRSOC-Offering-2022.svg" alt="" width="300" height="300" /></p>
<p style="text-align: center;"><strong>Modern XDR + SOC Architecture</strong></p>
<p><span style="font-family: Segoe UI; font-size: 12pt;">Click here to download the image in the formats: <a href="https://kloudynet.com/wp-content/uploads/2022/02/Kloudynet_Microsoft-Modern-XDRSOC-Offering-2022.svg">SVG</a>, <a href="https://kloudynet.com/wp-content/uploads/2022/02/Kloudynet_Microsoft-Modern-XDRSOC-Offering-2022.pdf">PDF</a> or <a href="https://kloudynet.com/wp-content/uploads/2022/02/Kloudynet_Microsoft-Modern-XDRSOC-Offering-2022.png">PNG</a><br />
</span></p>
<p><span style="font-family: Segoe UI; font-size: 16pt;"><strong>Microsoft Defender<br />
</strong></span></p>
<p><span style="font-family: Segoe UI; font-size: 12pt;">Microsoft Defender is offered as, <a href="https://aka.ms/m365d" target="_blank" rel="noopener noreferrer"><span style="color: blue; text-decoration: underline;">Microsoft 365 Defender</span></a> for end-user environments and <a href="https://aka.ms/azuredefender" target="_blank" rel="noopener noreferrer"><span style="color: blue; text-decoration: underline;">Defender for Cloud</span></a> for cloud and hybrid infrastructure.<br />
</span></p>
<p><span style="font-family: Segoe UI; font-size: 12pt;"><strong>Microsoft 365 Defender<br />
</strong></span></p>
<p><span style="font-family: Segoe UI; font-size: 12pt;">Microsoft 365 Defender delivers XDR capabilities for identities, endpoints, cloud apps, and emails. Microsoft 365 Defender includes the below technologies<br />
</span></p>
<ul>
<li><span style="font-family: Segoe UI; font-size: 12pt;">Microsoft Defender for Endpoint<br />
</span></li>
<li><span style="font-family: Segoe UI; font-size: 12pt;">Microsoft Defender for Office 365<br />
</span></li>
<li><span style="font-family: Segoe UI; font-size: 12pt;">Microsoft Defender for Identity<br />
</span></li>
<li><span style="font-family: Segoe UI; font-size: 12pt;">Azure Active Directory Identity Protection<br />
</span></li>
<li><span style="font-family: Segoe UI; font-size: 12pt;">Microsoft Defender for Cloud Apps<br />
</span></li>
</ul>
<p><span style="font-family: Segoe UI; font-size: 12pt;"><strong>Microsoft Defender for Cloud (Previously Azure Security Center)<br />
</strong></span></p>
<p><span style="font-family: Segoe UI; font-size: 12pt;">Defender for Cloud delivers XDR left capabilities to protect multi-cloud and hybrid workloads, that includes below capabilities<br />
</span></p>
<ul>
<li>
<div><span style="font-family: Segoe UI; font-size: 12pt;">Azure Defender which covers<br />
</span></div>
<ul>
<li><span style="font-family: Segoe UI; font-size: 12pt;">Servers (VMs running on Azure or anywhere using Azure Arc)<br />
</span></li>
<li><span style="font-family: Segoe UI; font-size: 12pt;">App Service<br />
</span></li>
<li><span style="font-family: Segoe UI; font-size: 12pt;">SQL servers on machines<br />
</span></li>
<li><span style="font-family: Segoe UI; font-size: 12pt;">Azure Storage<br />
</span></li>
<li><span style="font-family: Segoe UI; font-size: 12pt;">Kubernetes<br />
</span></li>
<li><span style="font-family: Segoe UI; font-size: 12pt;">Container Registries<br />
</span></li>
<li><span style="font-family: Segoe UI; font-size: 12pt;">Azure Key Vault<br />
</span></li>
</ul>
</li>
<li><span style="font-family: Segoe UI; font-size: 12pt;">Azure Defender for IoT<br />
</span></li>
<li><span style="font-family: Segoe UI; font-size: 12pt;">Azure Defender for SQL<br />
</span></li>
</ul>
<p><span style="font-family: Segoe UI; font-size: 16pt;"><strong>Microsoft Sentinel<br />
</strong></span></p>
<p><span style="font-family: Segoe UI; font-size: 12pt;">The XDR capabilities of Microsoft Defender delivered through Defender for Cloud and Microsoft 365</span><span style="font-family: Segoe UI; font-size: 12pt;"> Defender provides rich insights and prioritized alerts, but to gain visibility across your entire environment and include data from other security solutions such as firewalls and existing security tools, we connect Microsoft Defender to <a href="https://docs.microsoft.com/en-us/azure/sentinel/">Microsoft Sentinel</a>, Microsoft cloud-native SIEM.<br />
</span></p>
<p><span style="font-family: Segoe UI; font-size: 12pt;">Special thanks to <a href="https://www.linkedin.com/in/ahsim-nisar-12ba5419/">Ahsim Nisar</a> (Technical Specialist, Cyber Security) for providing guidance and technical inputs to build the architecture diagram<br />
</span></p>
<p>&nbsp;</p>
<p><a href="https://www.linkedin.com/in/fashaik/"><span style="font-family: Segoe UI; font-size: 12pt;">Fahad Shaikh</span></a><span style="font-family: Segoe UI; font-size: 12pt;">, Founder &amp; CEO, <a href="https://www.linkedin.com/company/kloudynet">Kloudynet Technologies</a><br />
</span></p>
]]></content:encoded>
					
					<wfw:commentRss>https://kloudynet.com/modern-xdr-soc-using-azure-sentinel/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>
