Forum Discussion
HeikeRitter
Microsoft
Mar 16, 2023Ninja Cat Giveaway: Episode 4 | Defender Experts for Hunting Overview
For this episode , your opportunity to win a plush ninja cat is the following -
Reply to this thread with:
- How would YOU explain/describe Defender Experts for Hunting to someone?
- Also in yo...
- Mar 18, 2023How would YOU explain/describe Defender Experts for Hunting to someone?
Defender Experts for Hunting is a managed threat hunting service that proactively looks for threat 24/7/365 across endpoints, Office 365, cloud applications, and identity using M365 Defender data to prioritize significant threat and help with daily SecOps work.
The following capabilities included in this managed threat hunting service:
1> DEN (Defender experts notifications) - Notifications show up as incidents in Microsoft 365 Defender, helping to improve security operations' incident response with specific information about the scope, method of entry, and remediation instructions.
2> EOD (Experts on Demand) - Click the 'Ask Defender Experts' button in M365 Defender portal to ask for help on specific incident, nation state actor, or attack vector
3> Reports - An interactive report summarizing what was hunted and found
4> Threat Hunting and Analytics -Defender Experts for Hunting look deeper to expose advanced threats and identify the scope and impact of malicious activity associated with human adversaries or hands-on-keyboard attacks.
what is Threat hunting?
Threat hunting is the proactive process of identifying and investigating potential security threats or malicious activity on a network, computer, or device. It involves analyzing system and network logs, observing user behavior patterns, and identifying anomalies and suspicious activity that indicate the presence of a threat. The aim of threat hunting is to detect security incidents before they cause harm, and to take steps to prevent them from happening again in the future.
Erik_Moreau
Mar 16, 2023MVP
- How would YOU explain/describe Defender Experts for Hunting to someone?
Defender Experts for Hunting is a service that provides proactive threat hunting across your Microsoft 365 environment. It leverages the advanced hunting data from Microsoft 365 Defender to detect and investigate threats that may evade traditional security solutions. Defender Experts for Hunting is staffed by Microsoft security experts who have deep knowledge and experience in threat hunting and analysis. They will deliver contextual alerts and remediation instructions to help you quickly respond to any malicious activity they find.
- Also in your own words: what is Threat hunting?
Threat hunting is an exciting and challenging cybersecurity function that uses proactive practices and intelligent technology to identify and reduce malicious activities in an organization’s systems. It assumes that attackers have already compromised the organization’s systems at their core level. Threat hunting is an active IT security exercise that digs deep to find malicious actors in your environment who have escaped your first endpoint security defense. Threat hunting is an art and a science that requires many skills and experience to be effective.
Defender Experts for Hunting is a service that provides proactive threat hunting across your Microsoft 365 environment. It leverages the advanced hunting data from Microsoft 365 Defender to detect and investigate threats that may evade traditional security solutions. Defender Experts for Hunting is staffed by Microsoft security experts who have deep knowledge and experience in threat hunting and analysis. They will deliver contextual alerts and remediation instructions to help you quickly respond to any malicious activity they find.
- Also in your own words: what is Threat hunting?
Threat hunting is an exciting and challenging cybersecurity function that uses proactive practices and intelligent technology to identify and reduce malicious activities in an organization’s systems. It assumes that attackers have already compromised the organization’s systems at their core level. Threat hunting is an active IT security exercise that digs deep to find malicious actors in your environment who have escaped your first endpoint security defense. Threat hunting is an art and a science that requires many skills and experience to be effective.
Mar 17, 2023
I agree with Erik, I like hunting and remediation to keep the environment Secure by Design.