Event banner
Microsoft Defender for Identity AMA
Event Ended
Wednesday, Jun 29, 2022, 09:00 AM PDTEvent details
We are very excited to announce our Microsoft Defender for Identity AMA!
An AMA is a live text-based online event similar to a “YamJam” on Yammer or an “Ask Me Anything” on Reddit. This AMA giv...
Trevor_Rusher
Updated Jun 29, 2022
blods
Jun 28, 2022Brass Contributor
How is alerting/contacting a business handled by the SOC team?
If it was the middle of the night - and there was a detected ransomware attack - can a business expect to be emailed, phoned or sent text messages?
Would the SOC team be able to start taking preemptive measures to defend against the attack even before an organizations IT team is aware of the issue?
- Daniel NaimJun 29, 2022Iron ContributorAll Microsoft Defender for Identity alerts can be sent to any SIEM solution using syslog integration. Also, there are also alert notification options you can read more about them here: https://docs.microsoft.com/en-us/microsoft-365/security/defender-endpoint/configure-email-notifications?view=o365-worldwide