SOLVED

Ninja Cat Giveaway: Episode 4 | Defender Experts for Hunting Overview

Microsoft

For this episode , your opportunity to win a plush ninja cat is the following -

Reply to this thread with:

- How would YOU explain/describe Defender Experts for Hunting to someone?

- Also in your own words: what is Threat hunting? 

 

This offer is non-transferable and cannot be combined with any other offer. This offer ends on April 14th, 2023, or until supplies are exhausted and is not redeemable for cash. Taxes, if there are any, are the sole responsibility of the recipient. Any gift returned as non-deliverable will not be re-sent. Please allow 6-8 weeks for shipment of your gift. Microsoft reserves the right to cancel, change, or suspend this offer at any time without notice. Offer void in Cuba, Iran, North Korea, Sudan, Syria, Region of Crimea, Russia, and where prohibited.

24 Replies
Defender Experts for Hunting is phoning in a Subject Matter Expert to assist you in your threat hunting needs. Threat Hunting is a process of proving a developed hypothesis of a perceived threat. It should be conducted proactively to develop new detections and reactively to identify IOCs within the environment and take remediation actions.
How would YOU explain/describe Defender Experts for Hunting to someone?
Defender Experts for Hunting is a service offered by Microsoft that provides expert advice and assistance to customers who need to respond to advanced and persistent cyber attacks. The service offers access to a team of experts who are experienced in investigating and resolving serious security incidents, and can help organizations quickly identify and respond to cyber threats. This helps customers to eliminate potential threats and reduce the risk of harm to their online assets.

-Also in your own words: what is Threat hunting?
Threat hunting is a proactive and continuous process of searching and tracking for signs of potential security threats within a network or computer system.
works for me :\ maybe a glitch in the matrix?
Defender Experts for Hunting is a Microsoft team that extends our SOC team by looking for things that either don't alert or piece together signals that together shows an attack in progress.

Threat hunting is a pro-active approach to determine whether any threat actors are trying to (or have already) infiltrated a network, but not set off any of the traditional warning systems.
Microsoft Defender Experts for Hunting is a security service offered by Microsoft that augments a customer's existing SOC by helping them proactively hunt threats and therefore add all the expertise and threat intelligence that Microsoft and its ecosystem has to offer. This service comes both with a proactive component (like e.g. hunting and analysis) but also reactive components ("ask a Defender Expert") to enrich the SOC teams cyber security intelligence.

Threat hunting (one of the proactive services that are part of Defender Experts for Hunting) is the process of proactively searching for and identifying threats that may have evaded traditional security measures. Usually the start of a threat hunt is the search for a specific "indicator of compromise" (obtained via various threat intelligence sources) within the infrastructure that is to be protected. (e.g. on an endpoint or within the network infrastrutcure). It helps e.g. to detect "dormant / pre-implanted hooks" (e.g. implanted before a specific security monitoring solution has been implemented) before they are being actively used by the attacker and generate alarms by the relevant security systems.