16.1 C
New York
September 26, 2026
Worship Media
Technology

Microsoft integrates SOC capabilities with Defender for enterprises

According to the technical post, Microsoft began rolling out case management, workbooks and natural-language playbook generation to eligible customers’ Defender portals on Sept. 23, with no additional configuration required.

The included data covers Defender for Endpoint, Office 365, Identity, Cloud Apps and Cloud, plus Microsoft Entra ID Protection logs and Azure and Office 365 activity logs. Retention is 30 days during the preview, rising to 90 days on Nov. 15, the post added.

Everything else costs

Anything beyond that requires an ISOC workspace, which needs an Azure subscription, according to Microsoft’s product documentation. The workspace unlocks more than 500 data connectors, user and entity behavior analytics (UEBA), CI/CD repositories and threat intelligence.

Click Here to Visit Orignal Source of Article https://www.computerworld.com/article/4226225/microsoft-integrates-soc-capabilities-with-defender-for-enterprises-2.html

Related posts

NetApp’s Spot PC: a foundation for a new desktop paradigm?

ComputerWorld

Apple Support prepares to leave X: End of the omni-channel?

ComputerWorld

Q&A: NearForm CCO Larry Breen on contacting-tracing apps

ComputerWorld

This website uses cookies to improve your experience. We'll assume you're ok with this, but you can opt-out if you wish. Accept Read More

Privacy & Cookies Policy