https://www.channelfutures.com/wp-content/themes/channelfutures_child/assets/images/logo/footer-new-logo.png
  • Home
  • Technologies
    • Back
    • SDN/SD-WAN
    • Cloud
    • RMM/PSA
    • Security
    • Telephony/UC/Collaboration
    • Cable
    • Mobility & Wireless
    • Fiber/Ethernet
    • Data Centers
    • Backup & Disaster Recovery
    • IoT
    • Desktop
    • Artificial Intelligence
    • Analytics
  • Strategy
    • Back
    • Mergers and Acquisitions
    • Channel Research
    • Business Models
    • Distribution
    • Technology Solutions Brokerages
    • Sales & Marketing
    • Best Practices
    • Vertical Markets
    • Regulation & Compliance
  • MSP 501
    • Back
    • 2022 MSP 501 Rankings
    • 2022 NextGen 101 Rankings
  • Intelligence
    • Back
    • Galleries
    • Podcasts
    • From the Industry
    • Reports/Digital Issues
    • Webinars
    • White Papers
  • Channel Futures TV
  • EMEA
  • Channel Chatter
    • Back
    • People on the Move
    • New/Changing Channel Programs
    • New Products & Services
    • Industry Honors
  • Resources
    • Back
    • Advisory Boards
    • Industry Organizations
    • Our Sponsors
    • Advertise
    • 2022 Editorial Calendar
  • Awards
    • Back
    • 2022 MSP 501
    • Channel Influencers
    • Circle of Excellence
    • DE&I 101
    • Channel Partners 101 (CP 101)
  • Events
    • Back
    • CP Conference & Expo
    • MSP Summit
    • Channel Partners Europe
    • Channel Partners Event Coverage
    • Webinars
    • Industry Events
  • About Us
  • DE&I
Channel Futures
  • NEWSLETTER
  • Home
  • Technologies
    • Back
    • SDN/SD-WAN
    • Cloud
    • RMM/PSA
    • Security
    • Telephony/UC/Collaboration
    • Cable
    • Mobility & Wireless
    • Fiber/Ethernet
    • Data Centers
    • Backup & Disaster Recovery
    • IoT
    • Desktop
    • Artificial Intelligence
    • Analytics
  • Strategy
    • Back
    • Mergers and Acquisitions
    • Channel Research
    • Business Models
    • Distribution
    • Technology Solutions Brokerages
    • Sales & Marketing
    • Best Practices
    • Vertical Markets
    • Regulation & Compliance
  • MSP 501
    • Back
    • 2022 MSP 501 Rankings
    • 2022 NextGen 101 Rankings
  • Intelligence
    • Back
    • Galleries
    • Podcasts
    • From the Industry
    • Reports/Digital Issues
    • Webinars
    • White Papers
  • Channel Futures TV
  • EMEA
  • Channel Chatter
    • Back
    • People on the Move
    • New/Changing Channel Programs
    • New Products & Services
    • Industry Honors
  • Resources
    • Back
    • Advisory Boards
    • Industry Organizations
    • Our Sponsors
    • Advertise
    • 2022 Editorial Calendar
  • Awards
    • Back
    • 2022 MSP 501
    • Channel Influencers
    • Circle of Excellence
    • DE&I 101
    • Channel Partners 101 (CP 101)
  • Events
    • Back
    • CP Conference & Expo
    • MSP Summit
    • Channel Partners Europe
    • Channel Partners Event Coverage
    • Webinars
    • Industry Events
  • About Us
  • DE&I
    • Newsletter
  • REGISTER
  • MSPs
  • VARs / SIs
  • Agents
  • Cloud Service Providers
  • Channel Partners Events
 Channel Futures

Security


Microsoft Adds Threat Intelligence, Proactive Hunting to Defender

  • Written by Jeffrey Schwartz
  • August 5, 2022
The new Microsoft Defender offerings come as the company encourages partners to offer more security.

Microsoft is expanding its threat protection capabilities with the launch of three additions to its Defender portfolio. The new threat intelligence tools, launched this week, come as Microsoft is persuading partners to provide more security services.

During last month’s Microsoft Inspire conference, officials emphasized that partners should offer Microsoft’s various security offerings for all their cybersecurity requirements. The company has stated that security products have become a $15 billion business and growing at a 40% rate.

The new offerings include Microsoft Defender Threat Intelligence, Microsoft Defender External Attack Surface Management and Microsoft Defender Experts for Hunting. All three draw on telemetry from Microsoft’s threat intelligence and cybercrime centers.

Vasu Jakkal (pictured above at the recent Microsoft Inspire), Microsoft’s corporate VP for security, compliance identity and management, noted that those operations now track 35 ransomware families, and more than 250 nation-states and criminals. Microsoft’s cloud analyzes more than 43 trillion security signals daily, according to Jakkal’s blog announcing the new Defender offerings.

“This massive amount of intelligence derived from our platform and products gives us unique insights to help protect customers from the inside out,” Jakkal wrote.

Microsoft’s acquisition of RiskIQ last year has helped expand visibility into threat actor activity, behavior patterns and targeting, she noted.

Security administrators “can also map their digital environment and infrastructure to view their organization as an attacker would,” Jakkal added. That outside-in view “delivers even deeper insights to help organizations predict malicious activity and secure unmanaged resources.”

Microsoft Defender Threat Intelligence

The new Microsoft Defender Threat Intelligence provides direct access to  security gathered from the Microsoft Defender family and Microsoft Sentinel security information and event management (SIEM) platform.

“Organizations can proactively hunt for threats more broadly in their environments, empower custom threat intelligence processes and investigations, and improve the performance of third-party security products,” Jakkal said.

The new Microsoft Threat Intelligence routinely scans the internet and provides threat intelligence with specific details. The details displayed in the Microsoft Threat Intelligence portal include threat actors by name, their tools, tactics and procedures (TTPs).

The added threat intelligence comes from RiskIQ’s security research teams Also, Defender Threat Intelligence draws from the Microsoft Threat Intelligence Center (MSTIC) and the Microsoft 365 Defender research teams.

According to Microsoft, the large volume of intelligence promises to embolden those who operate security operations centers (SOCs).

Microsoft Defender External Attack Surface Management

Microsoft Defender External Attack Surface Management gives security teams views of threats outside their firewalls. This view aims to help security teams discover potential points of entry that an attacker could exploit.

The tool builds a complete view of a customer organization by creating a catalog of the entire environment. It scans the internet to find resources, including agentless and unmanaged assets, to map out a potential attack surface.

Defender Experts for Hunting

Defender Experts for Hunting is for those who operate security operations centers (SOCs) but want to find threats proactively. It lets security professionals hunt for threats across endpoints, the Microsoft 365 software stack, SaaS applications and identities.

It includes an analysis tool to help determine threats’ scope and potential impact. A feature called Defender Experts notifications provides alerts in Microsoft 365 Defender. A reporting tool summarizes what threats the software found.

Want to contact the author directly about this story? Have ideas for a follow-up article? Email Jeffrey Schwartz or connect with him on LinkedIn.

 

Tags: Cloud Service Providers MSPs VARs/SIs Channel Chatter New Products & Services Security Technologies

Most Recent


  • Nutanix Layoffs Coming, Analysts Point to 'Significant Overspending'
    It was “long overdue,” one analyst said.
  • Chris Krebs
    Black Hat USA: Former CISA Director Says Cybercrime to Get a Lot Worse Before Better
    Black Hat attendance is back to pre-pandemic levels.
  • Restructuring
    CEO on Rackspace Restructuring: ‘We’re Excited About … 2 Business Units’
    Kevin Jones gave analysts some insight into upcoming changes at the giant managed service provider.
  • application portfolio modernization
    Adaptiv Networks' SD-WAN Joins OTG Consulting Portfolio
    Adaptiv Networks SD-WAN will help OTG agents move customers from PSTN to UCaaS.

Leave a comment Cancel reply

-or-

Log in with your Channel Futures account

Alternatively, post a comment by completing the form below:

Your email address will not be published. Required fields are marked *

Related Content

  • Black Hat logo
    Black Hat USA 2022: DNSFilter, NetWitness, BlackBerry, CrowdStrike, More
  • Business handshake
    Nexus IT Merges with Intelitechs, Advances 5-Year Growth Strategy
  • Disaster recovery ignition button
    IGEL Rolls Out New Disaster Recovery Program in Response to Malware, Ransomware
  • MSP Summit Preview Generic Freeze Larger
    ThreatLocker Preaches Zero Trust, Addresses Industry Competition

Upcoming Events

View all

MSP Summit

September 13, 2022 - September 16, 2022

Channel Partners Conference & Expo

May 1, 2023 - May 4, 2023

Galleries

View all

Black Hat USA: Former CISA Director Says Cybercrime to Get a Lot Worse Before Better

August 11, 2022

Channel Futures and Channel Partners Ready Trio of Powerhouse Summits

August 11, 2022

Black Hat USA 2022: DNSFilter, NetWitness, BlackBerry, CrowdStrike, More

August 10, 2022

Industry Perspectives

View all

Seize the Application Modernization Opportunity

August 2, 2022

A Growth Mindset: Your Organization’s Strategic Differentiator

August 1, 2022

Timely Tips for Non-Negotiable Patch Updates

July 29, 2022

Webinars

View all

Outsmarting RaaS: Implementation Strategies To Help Your Clients Before, During, and After a Ransomware Attack

August 23, 2022

Why it is Important to Upgrade Aging Servers and How to use Live Optics to Upgrade Efficiently

August 25, 2022

Executives at Home are Not Alright: An Intro to Digital Executive Protection

September 8, 2022

White Papers

View all

Work Goes Remote – (and Other Top ITOps Trends)

May 25, 2022

The New Bottom Line: How MSPs Can Meet the Healthcare Crisis While Evolving Their Businesses

April 19, 2022

How to build a Security Operations Center (on a budget)

April 4, 2022

Channel Futures TV

View all

ThreatLocker Preaches Zero Trust, Addresses Industry Competition

ScienceLogic Debuts New Partner Portal

August 9, 2022

Vonage a ‘Single Communications Stack Provider’ for Partners, Customers

June 27, 2022

IBM, Partners and the $1 Trillion Hybrid Cloud Opportunity

June 26, 2022

Twitter

ChannelFutures

.@nutanix said to lay off 4% of workforce by October, as company cites macroeconomic issues. dlvr.it/SWSMDN https://t.co/w6JeqkI7r6

August 11, 2022
ChannelFutures

#BHUSA Day 1 with Chris Krebs, @cybereason, @keepersecurity, @BreachQuest, @awscloud and @splunk. #cybersecurity… twitter.com/i/web/status/1…

August 11, 2022
ChannelFutures

Have you registered for the @MSP_Summit yet? It’s just about a month away, so don’t wait. Here’s a sneak preview of… twitter.com/i/web/status/1…

August 11, 2022
ChannelFutures

Read about @adaptivnetworks's new distribution partner. dlvr.it/SWQFh3 https://t.co/az12SeMU7X

August 10, 2022
ChannelFutures

A succession crisis has been brewing in the channel. Are you thinking about how to develop leaders?… twitter.com/i/web/status/1…

August 10, 2022
ChannelFutures

Looking for clues about the upcoming #Rackspace #restructuring? We have a little insight from yesterday’s earnings… twitter.com/i/web/status/1…

August 10, 2022
ChannelFutures

Ready for more @GoogleCloud in #AsiaPacific? Find out where channel partners will be able to take advantage of new… twitter.com/i/web/status/1…

August 10, 2022
ChannelFutures

[email protected] has been a key figure in both the TSB market and the channel DE&I community. @Telarus… twitter.com/i/web/status/1…

August 10, 2022

MSP 501

The industry's largest and most comprehensive partner awards program.

Newsletters and Updates

Sign up for The Channel Report, Channel Futures Update, MSP 501 Newsletter and more.

Live Channel Events

Get the latest information on the next industry-leading Channel Partners event.

Galleries

Educational slide shows and images from live events.

Media Kit And Advertising

Want to reach our audience? Access our media kit.

DISCOVER MORE FROM INFORMA TECH

  • Channel Partners Events
  • Telecoms.com
  • MSP 501
  • Black Hat
  • IoT World Today
  • Omdia

WORKING WITH US

  • Contact
  • About Us
  • Advertise
  • Newsletter

FOLLOW Channel Futures ON SOCIAL

  • Privacy
  • CCPA: “Do Not Sell My Data”
  • Cookie Policy
  • Terms
Copyright © 2022 Informa PLC. Informa PLC is registered in England and Wales with company number 8860726 whose registered and Head office is 5 Howick Place, London, SW1P 1WG.
This website uses cookies, including third party ones, to allow for analysis of how people use our website in order to improve your experience and our services. By continuing to use our website, you agree to the use of such cookies. Click here for more information on our Cookie Policy and Privacy Policy.
X