ninja training
16 TopicsUsing MDTI with the Diamond Model for Threat Intelligence
Microsoft Defender Threat Intelligence (MDTI) provides robust tools and features that enable security analysts to quickly investigate incidents and respond to cyber threats by applying the Diamond Model for Intrusion Analysis Framework to threat intelligence.Performing a Successful Proof of Concept (PoC)
To effectively determine the benefits of adopting Defender Threat Intelligence, you should perform a Proof of Concept (PoC). Before enabling Defender Threat Intelligence, you and your team should go through a planning process to determine a series of tasks that must be accomplished in this PoC.Defender TI Empowers Organizations to Get More Done With Less
A recent peer-reviewed commentary published by the Sans Institute explores the critical role of cyber threat intelligence in attack surface management. Here's how Microsoft Defender Threat Intelligence enables defenders to get more done with less.What's in an MDTI Web Crawl?
Want to learn how data found from the DOM of web pages is so powerful when it comes to investigating threats? Check out this blog to learn more about Microsoft Defender Threat Intelligence's web crawling process and how its internet derived datasets can bolster your cyber threat investigations.Using Reputation and Analyst Insights Features For Quick Indicator Assessments
Understanding if a host, domain, or IP address is good, bad, or otherwise, can be difficult during your security incident triage process. Microsoft Defender Threat Intelligence's reputation and analyst insight features make it easier to quickly make these assessments. Quicker triage = more time spent focusing on investigating the most severe cyber threats.