Event banner
Implementing Defender for Cloud, Microsoft’s CNAPP to embed security from code to cloud
Event details
You can leverage the MDC Attack Path analysis functionality to offer enhanced security services to your customers. Here are some recommendations for how you can approach providing services associated with the MDC Attack Path analysis functionality:
-
Understand your customer's security requirements: Before offering any security service, it's important to understand your customer's security requirements. The MDC Attack Path analysis functionality can help you identify potential attack paths that could be used to target your customer's cloud resources. Use this information to develop a customized security plan that meets your customer's specific needs.
-
Configure and deploy MDC: To use the MDC Attack Path analysis functionality, you'll need to configure and deploy MDC within your customer's cloud environment. Work with your customer's IT team to ensure that MDC is deployed correctly and that the relevant resources are being monitored.
-
Conduct regular Attack Path analysis: Once MDC is up and running, conduct regular Attack Path analysis to identify potential vulnerabilities and attack paths. Use this information to prioritize security actions and proactively mitigate risks before they can be exploited.
-
Provide remediation recommendations: As part of your services, provide remediation recommendations based on the Attack Path analysis. This can include recommendations for adjusting security policies, reconfiguring cloud resources, and implementing additional security controls.
-
Monitor and report on progress: Finally, monitor and report on progress to demonstrate the effectiveness of your services. Provide regular reports on the status of the Attack Path analysis, any remediation actions taken, and the overall security posture of your customer's cloud environment.
- Dean_GrossApr 13, 2023Silver Contributor
It would be helpful to include this type of guidance in the MSSP playbook that was produced by the Sentinel team
Microsoft Sentinel Technical Playbook for MSSPs
How to deploy Microsoft Sentinel as a Managed Security Services Provider
Published: November-2022, Revision: V1.5.1
Authors:
Javier Soriano (Senior Program Manager, CxE Sentinel)
Ty Balascio (Senior Program Manager, CxE)
Yaniv Shasha (Senior Program Manager, CxE Sentinel)
Chris Boehm (Senior Program Manager, CxE Sentinel)
Chi Nguyen (Program Manager 2, CxE Sentinel)
Paul Cullimore (Senior Business Strategy Manager)
Edi Lahav (Principal PM Manager, CxE Sentinel)
Richard Diver (Senior Business Strategy Manager)
Waleed Bedair (Senior Program Manager, CxE Partners security)
Gary Bushey (Senior Program Manager, CxE Sentinel)
Margaret Mwaura (Program Manager, CxE Sentinel)
Didier Danloy (Program Manager, CxE Sentinel)
Jeremy Tan (Senior Program Manager, CxE Sentinel