https://www.channelfutures.com/wp-content/themes/channelfutures_child/assets/images/logo/footer-new-logo.png
  • Home
  • Technologies
    • Back
    • SDN/SD-WAN
    • Cloud
    • RMM/PSA
    • Security
    • Telephony/UC/Collaboration
    • Cable
    • Mobility & Wireless
    • Fiber/Ethernet
    • Data Centers
    • Backup & Disaster Recovery
    • IoT
    • Desktop
    • Artificial Intelligence
    • Analytics
  • Strategy
    • Back
    • Mergers and Acquisitions
    • Channel Research
    • Business Models
    • Distribution
    • Technology Solutions Brokerages
    • Sales & Marketing
    • Best Practices
    • Vertical Markets
    • Regulation & Compliance
    • Diversity, Equity & Inclusion
  • MSP 501
    • Back
    • 2022 MSP 501 Rankings
    • 2022 NextGen 101 Rankings
    • MSP 501 Information Center
  • Intelligence
    • Back
    • Galleries
    • Podcasts
    • From the Industry
    • Reports/Digital Issues
    • Webinars
    • White Papers
  • Channel Futures TV
  • EMEA
  • Channel Chatter
    • Back
    • People on the Move
    • New/Changing Channel Programs
    • New Products & Services
    • Industry Honors
  • Resources
    • Back
    • Advisory Boards
    • Industry Organizations
    • Our Sponsors
    • Advertise
    • 2022 Editorial Calendar
  • Awards
    • Back
    • 2022 MSP 501
    • Channel Influencers
    • Circle of Excellence
    • DE&I 101
    • Channel Partners 101 (CP 101)
  • Events
    • Back
    • CP Conference & Expo
    • MSP Summit
    • Channel Partners Europe
    • Channel Partners Event Coverage
    • Webinars
    • Industry Events
  • About Us
  • DE&I
Channel Futures
  • NEWSLETTER
  • Home
  • Technologies
    • Back
    • SDN/SD-WAN
    • Cloud
    • RMM/PSA
    • Security
    • Telephony/UC/Collaboration
    • Cable
    • Mobility & Wireless
    • Fiber/Ethernet
    • Data Centers
    • Backup & Disaster Recovery
    • IoT
    • Desktop
    • Artificial Intelligence
    • Analytics
  • Strategy
    • Back
    • Mergers and Acquisitions
    • Channel Research
    • Business Models
    • Distribution
    • Technology Solutions Brokerages
    • Sales & Marketing
    • Best Practices
    • Vertical Markets
    • Regulation & Compliance
    • Diversity, Equity & Inclusion
  • MSP 501
    • Back
    • 2022 MSP 501 Rankings
    • 2022 NextGen 101 Rankings
    • MSP 501 Information Center
  • Intelligence
    • Back
    • Galleries
    • Podcasts
    • From the Industry
    • Reports/Digital Issues
    • Webinars
    • White Papers
  • Channel Futures TV
  • EMEA
  • Channel Chatter
    • Back
    • People on the Move
    • New/Changing Channel Programs
    • New Products & Services
    • Industry Honors
  • Resources
    • Back
    • Advisory Boards
    • Industry Organizations
    • Our Sponsors
    • Advertise
    • 2022 Editorial Calendar
  • Awards
    • Back
    • 2022 MSP 501
    • Channel Influencers
    • Circle of Excellence
    • DE&I 101
    • Channel Partners 101 (CP 101)
  • Events
    • Back
    • CP Conference & Expo
    • MSP Summit
    • Channel Partners Europe
    • Channel Partners Event Coverage
    • Webinars
    • Industry Events
  • About Us
  • DE&I
    • Newsletter
  • REGISTER
  • MSPs
  • VARs / SIs
  • Agents
  • Cloud Service Providers
  • Channel Partners Events
 Channel Futures

Security


Shutterstock

Cloud security

Microsoft Defender Rebranding Marks New Focus on Automated XDR-SIEM Integration

  • Written by Jeffrey Schwartz
  • September 24, 2020
Microsoft is integrating its extended detection and response tools and adding updates to Azure Sentinel.

… support for custom and third-party machine learning capabilities. Azure Sentinel’s new machine learning framework provides data pipelines, tools and templates. It also supports programming environments including Azure Databricks, Spark, Jupyter Notebooks and Python.

Also coming to Azure Sentinel is support for telemetry from IoT and operational technology (OT) networks. The latter comes from technology via Microsoft’s its June acquisition of CyberX

Microsoft is positioning the combination of its Azure Sentinel SIEM and its XDR tools as a “unique approach” to security. In this week’s announcement, Lefferts said the integration of SIEM and XDR provides the “best of both worlds.”

The unification of its threat protection portfolio under the Microsoft Defender brand aligns with their role in the XDR chain. Microsoft has split the Defender solution set into two categories: Microsoft 365 Defender and Azure Defender.

“We give you a set of connected best-of-breed solutions for your data, device endpoints, identities and apps with Microsoft 365 Defender,” Lefferts said. “And this is now combined with Azure Defender for threat protection across your server endpoints containers, network, IoT devices on the edge and managed apps. “Together Microsoft 365 Defender and Azure Defender give you an end-to-end XDR solution for threat detection and response across your Microsoft estate — in the cloud, on prem and other clouds.”

Microsoft 365 Defender

Microsoft 365 Defender is the set of threat protection tools that more clearly identify what they are protecting. According to Microsoft, they offer XDR capabilities for endpoints, identities, cloud applications, emails and documents. The company cited a recent test showing that it consolidated 1,000 alerts to 40 high-priority incidents. Using self-healing, the Microsoft Defender 365 testing automatically remediated 70% of incidents, according to the company.

The Microsoft 365 portfolio includes: Microsoft 365 Defender (previously Microsoft Threat Protection), Microsoft Defender for Endpoint (previously Microsoft Defender Advanced Threat Protection), Microsoft Defender for Office 365 (previously Office 365 Advanced Threat Protection) and Microsoft Defender for Identity (previously Azure Advanced Threat Protection)

Along with the new Microsoft 365 Defender brand, the company now supports Windows Linux, MacOS, iOS and Android endpoints. Microsoft 365 Defender is now generally available, while the company released a preview of an iOS version this week. Microsoft this week also added extended vulnerability management to its MacOS version. Furthermore, the company introduced priority account protection for the Office 365 version, adding increased protection for at risk users.

Azure Defender

The new Azure Defender builds on Microsoft’s Azure Security Center. Azure Defender portfolio also provides XDR to hybrid workloads including virtual machines, databases, containers and IoT telemetry.

Azure Defender delivers XDR capabilities to protect multicloud and hybrid workloads, including virtual machines, databases, containers, IoT and more. Customers and partners can access the various Azure Defender from Microsoft’s Azure Security Center.

Azure Defender includes: Azure Defender for Servers (previously Azure Security Center Standard Edition), Azure Defender for IoT (previously Azure Security Center for IoT) and Azure Defender for SQL (previously Advanced Threat Protection for SQL).

Microsoft said it will roll out a new unified experience for the various Azure Defender tools. Set for release next week, the company said it will make it easier for administrators to identify resources that need protection. It’s also available here.

Also in the pipeline is improved support for both on-premises and SQL servers in multiple clouds. Microsoft said it will offer added protection for virtual machines and containers in multicloud environments. It will include policy management and continuous scanning of container images and registries in Kubernetes environments.

Microsoft will also integrate CyberX into Azure Defender for IoT with support for OT networks.

  • Page 1
  • Page 2
Tags: MSPs VARs/SIs Analytics Cloud IoT Mobility & Wireless Security Technologies Virtualization

Most Recent


  • Cloud computing
    Public Cloud Momentum Pacing Past Forecasts, With AWS, Azure in Lead
    We assess the soaring numbers with the help of Gartner, IDC and Synergy Research.
  • Tape Measure
    How the Cloud Has Changed Measurement for Partners
    Customer success will become the driving metric for partner success in new cloud-centric environment.
  • Making Waves
    7 Channel People Making Waves This Week at Datto, New Relic, Kyndryl, More
    Our No.1 story was a video segment highlighting IBM.
  • Fireworks
    Cybersecurity Experts: July 4th Weekend Ripe for Ransomware, Other Attacks
    Russia definitely has motivation to exploit the July 4th holiday in some way.

Leave a comment Cancel reply

-or-

Log in with your Channel Futures account

Alternatively, post a comment by completing the form below:

Your email address will not be published. Required fields are marked *

Related Content

  • edge computing
    'Challenging Results' for MSPs in Channel Futures' Exclusive Quarterly Survey
  • White House
    White House Urges Companies to Take Ransomware Attacks More Seriously
  • Security shield on digital background
    VMware Security Connect Focused on Redefining Security, Increasing Threats
  • Fortune 500 2021 logo
    AT&T, Microsoft, Verizon, More Tech, Telco Companies Make Latest Fortune 500

Upcoming Events

View all

MSP Summit

September 13, 2022 - September 16, 2022

Channel Partners Conference & Expo

May 1, 2023 - May 4, 2023

Galleries

View all

Public Cloud Momentum Pacing Past Forecasts, With AWS, Azure in Lead

July 4, 2022

7 Channel People Making Waves This Week at Datto, New Relic, Kyndryl, More

July 1, 2022

Cybersecurity Experts: July 4th Weekend Ripe for Ransomware, Other Attacks

July 1, 2022

Industry Perspectives

View all

How to Make Embracing Change Part of Your Company Culture

July 1, 2022

How to Differentiate to Leverage 5G’s Revenue Opportunity

June 28, 2022

Why MSPs are Attractive Cyberattack Targets

June 24, 2022

Webinars

View all

VEP Platform for Delivery of uCPE, SD-WAN and SASE

June 29, 2022

The Digital Worker: How to Empower Customers with a Flexible, Scalable VDI Solution to Enable Remote Work

June 30, 2022

Growing Partner Revenue and Customer Satisfaction with Power Management Services

June 23, 2022

White Papers

View all

Work Goes Remote – (and Other Top ITOps Trends)

May 25, 2022

The New Bottom Line: How MSPs Can Meet the Healthcare Crisis While Evolving Their Businesses

April 19, 2022

How to build a Security Operations Center (on a budget)

April 4, 2022

Channel Futures TV

View all

Vonage a ‘Single Communications Stack Provider’ for Partners, Customers

IBM, Partners and the $1 Trillion Hybrid Cloud Opportunity

June 26, 2022

Agents Share ‘Secrets,’ Industry Opportunity

May 11, 2022

AT&T, Microsoft, Cisco, ThreatLocker on Unlocking Partner Potential

May 6, 2022

Twitter

ChannelFutures

Happy Independence Day 🎇 to our U.S. colleagues, from the #ChannelFutures and #ChannelPartners team to yours! We ho… twitter.com/i/web/status/1…

July 4, 2022
ChannelFutures

#Publiccloud demand is going nowhere. We dive into stats. @AWSCloud @Azure @IDC @Gartner_inc @SRG_Research #cloud… twitter.com/i/web/status/1…

July 4, 2022
ChannelFutures

Partners can bring more value to #customerrelationships with the #customerexperience, says @SAPPartners4U.… twitter.com/i/web/status/1…

July 4, 2022
ChannelFutures

Channel people making waves this week include: @jpdepa3rd, @RiyaShanmugam, @sandyhogan dlvr.it/STCM6S https://t.co/oVB86ztTtP

July 1, 2022
ChannelFutures

#Cybersecurity experts say July 4th weekend ripe for #ransomware, other attacks. @blumirasec @Netenrich @Vectra_AI… twitter.com/i/web/status/1…

July 1, 2022
ChannelFutures

New @PureStorage #ITchannel leader details jump from Veritas. dlvr.it/STBsLB https://t.co/BFSmZ5ubff

July 1, 2022
ChannelFutures

New Pure Storage EMEA Channel Leader Details Jump from Veritas dlvr.it/STBrPQ https://t.co/LjFXo6FbVF

July 1, 2022
ChannelFutures

.@qumulo latest channel business to confirm layoffs impacting 80 workers. #storage dlvr.it/STBh1L https://t.co/hE10wBA3ka

July 1, 2022

MSP 501

The industry's largest and most comprehensive partner awards program.

Newsletters and Updates

Sign up for The Channel Report, Channel Futures Update, MSP 501 Newsletter and more.

Live Channel Events

Get the latest information on the next industry-leading Channel Partners event.

Galleries

Educational slide shows and images from live events.

Media Kit And Advertising

Want to reach our audience? Access our media kit.

DISCOVER MORE FROM INFORMA TECH

  • Channel Partners Events
  • Telecoms.com
  • MSP 501
  • Black Hat
  • IoT World Today
  • Omdia

WORKING WITH US

  • Contact
  • About Us
  • Advertise
  • Newsletter

FOLLOW Channel Futures ON SOCIAL

  • Privacy
  • CCPA: “Do Not Sell My Data”
  • Cookie Policy
  • Terms
Copyright © 2022 Informa PLC. Informa PLC is registered in England and Wales with company number 8860726 whose registered and Head office is 5 Howick Place, London, SW1P 1WG.
This website uses cookies, including third party ones, to allow for analysis of how people use our website in order to improve your experience and our services. By continuing to use our website, you agree to the use of such cookies. Click here for more information on our Cookie Policy and Privacy Policy.
X