Skip to content

Commit c431041

Browse files
update links for new location of article
1 parent d5c3dcd commit c431041

File tree

1 file changed

+15
-15
lines changed

1 file changed

+15
-15
lines changed

articles/sentinel/sentinel-solution.md

Lines changed: 15 additions & 15 deletions
Original file line numberDiff line numberDiff line change
@@ -25,10 +25,10 @@ While only Microsoft Sentinel is required to get started, the solution is enhanc
2525
- [Microsoft Defender for Cloud Apps](https://www.microsoft.com/microsoft-365/enterprise-mobility-security/cloud-app-security)
2626
- [Microsoft Defender for Office 365](https://www.microsoft.com/microsoft-365/security/office-365-defender)
2727

28-
For more information, see [Guiding principles of Zero Trust](../zero-trust-overview.md#guiding-principles-of-zero-trust).
28+
For more information, see [Guiding principles of Zero Trust](/azure/security/integrated/zero-trust-overview#guiding-principles-of-zero-trust).
2929

3030
> [!NOTE]
31-
> Microsoft Sentinel solutions are sets of bundled content, pre-configured for a specific set of data. For more information, see [Microsoft Sentinel solutions documentation](/azure/sentinel/sentinel-solutions).
31+
> Microsoft Sentinel solutions are sets of bundled content, pre-configured for a specific set of data. For more information, see [Microsoft Sentinel solutions documentation](sentinel-solutions).
3232
>
3333
3434
## The Zero Trust solution and the TIC 3.0 framework
@@ -53,7 +53,7 @@ The Microsoft Sentinel solution for **Zero Trust (TIC 3.0)** is useful for any o
5353

5454
Before installing the **Zero Trust (TIC 3.0)** solution, make sure you have the following prerequisites:
5555

56-
- **Onboard Microsoft services**: Make sure that you have both [Microsoft Sentinel](/azure/sentinel/quickstart-onboard) and [Microsoft Defender for Cloud](/azure/defender-for-cloud/get-started) enabled in your Azure subscription.
56+
- **Onboard Microsoft services**: Make sure that you have both [Microsoft Sentinel](quickstart-onboard) and [Microsoft Defender for Cloud](/azure/defender-for-cloud/get-started) enabled in your Azure subscription.
5757

5858
- **Microsoft Defender for Cloud requirements**: In Microsoft Defender for Cloud:
5959

@@ -73,7 +73,7 @@ Before installing the **Zero Trust (TIC 3.0)** solution, make sure you have the
7373

7474
When you're done, select **Review + Create** to install the solution.
7575

76-
For more information, see [Deploy out-of-the-box content and solutions](/azure/sentinel/sentinel-solutions-deploy).
76+
For more information, see [Deploy out-of-the-box content and solutions](sentinel-solutions-deploy).
7777

7878
## Sample usage scenario
7979

@@ -93,7 +93,7 @@ After [installing](#install-the-zero-trust-tic-30-solution) the **Zero Trust (TI
9393
9494
1. **Review the control cards displayed**. For example, scroll down to view the **Adaptive Access Control** card:
9595

96-
:::image type="content" source="../media/integrate/sentinel-workbook/review-query-output-sample.png" alt-text="Screenshot of the Adaptive Access Control card.":::
96+
:::image type="content" source="media/sentinel-workbook/review-query-output-sample.png" alt-text="Screenshot of the Adaptive Access Control card.":::
9797

9898
> [!TIP]
9999
> Use the **Guides** toggle at the top left to view or hide recommendations and guide panes. For example, these may be helpful when you first access the workbook, but unnecessary once you've understood the relevant concepts.
@@ -103,7 +103,7 @@ After [installing](#install-the-zero-trust-tic-30-solution) the **Zero Trust (TI
103103

104104
The query is opened in the Microsoft Sentinel **Logs** page:
105105

106-
:::image type="content" source="../media/integrate/sentinel-workbook/explore-query-logs.png" alt-text="Screenshot of the selected query in the Microsoft Sentinel Logs page.":::
106+
:::image type="content" source="media/sentinel-workbook/explore-query-logs.png" alt-text="Screenshot of the selected query in the Microsoft Sentinel Logs page.":::
107107

108108
### Configure Zero Trust-related alerts
109109

@@ -115,27 +115,27 @@ For example, if your workload's resiliency posture falls below a specified perce
115115

116116
Update the rules as needed or configure a new one:
117117

118-
:::image type="content" source="../media/integrate/sentinel-workbook/edit-rule.png" alt-text="Screenshot of the Analytics rule wizard.":::
118+
:::image type="content" source="media/sentinel-workbook/edit-rule.png" alt-text="Screenshot of the Analytics rule wizard.":::
119119

120-
For more information, see [Create custom analytics rules to detect threats](/azure/sentinel/detect-threats-custom).
120+
For more information, see [Create custom analytics rules to detect threats](detect-threats-custom).
121121

122122
### Respond with SOAR
123123

124124
In Microsoft Sentinel, navigate to the **Automation** > **Active playbooks** tab, and locate the **Notify-GovernanceComplianceTeam** playbook.
125125

126126
Use this playbook to automatically monitor CMMC alerts, and notify the governance compliance team with relevant details via both email and Microsoft Teams messages. Modify the playbook as needed:
127127

128-
:::image type="content" source="../media/integrate/sentinel-workbook/logic-app-sample.png" alt-text="Screenshot of the Logic app designer showing a sample playbook.":::
128+
:::image type="content" source="media/sentinel-workbook/logic-app-sample.png" alt-text="Screenshot of the Logic app designer showing a sample playbook.":::
129129

130-
For more information, see [Use triggers and actions in Microsoft Sentinel playbooks](/azure/sentinel/playbook-triggers-actions).
130+
For more information, see [Use triggers and actions in Microsoft Sentinel playbooks](playbook-triggers-actions).
131131

132132
## Frequently asked questions
133133

134134
### Are custom views and reports supported?
135135

136136
Yes. You can customize your **Zero Trust (TIC 3.0)** workbook to view data by subscription, workspace, time, control family, or maturity level parameters, and you can export and print your workbook.
137137

138-
For more information, see [Use Azure Monitor workbooks to visualize and monitor your data](/azure/sentinel/monitor-your-data).
138+
For more information, see [Use Azure Monitor workbooks to visualize and monitor your data](monitor-your-data).
139139

140140
### Are additional products required?
141141

@@ -151,13 +151,13 @@ Panels with no data provide a starting point for addressing Zero Trust and TIC 3
151151

152152
Yes. You can use workbook parameters, Azure Lighthouse, and Azure Arc to leverage the **Zero Trust (TIC 3.0)** solution across all of your subscriptions, clouds, and tenants.
153153

154-
For more information, see [Use Azure Monitor workbooks to visualize and monitor your data](/azure/sentinel/monitor-your-data) and [Manage multiple tenants in Microsoft Sentinel as an MSSP](/azure/sentinel/multiple-tenants-service-providers).
154+
For more information, see [Use Azure Monitor workbooks to visualize and monitor your data](monitor-your-data) and [Manage multiple tenants in Microsoft Sentinel as an MSSP](multiple-tenants-service-providers).
155155

156156
### Is partner integration supported?
157157

158158
Yes. Both workbooks and analytics rules are customizable for integrations with partner services.
159159

160-
For more information, see [Use Azure Monitor workbooks to visualize and monitor your data](/azure/sentinel/monitor-your-data) and [Surface custom event details in alerts](/azure/sentinel/surface-custom-details-in-alerts).
160+
For more information, see [Use Azure Monitor workbooks to visualize and monitor your data](monitor-your-data) and [Surface custom event details in alerts](surface-custom-details-in-alerts).
161161

162162
### Is this available in government regions?
163163

@@ -169,14 +169,14 @@ Yes. The **Zero Trust (TIC 3.0)** solution is in Public Preview and deployable t
169169

170170
- [Microsoft Sentinel Reader](/azure/role-based-access-control/built-in-roles#microsoft-sentinel-reader) users can view data, incidents, workbooks, and other Microsoft Sentinel resources.
171171

172-
For more information, see [Permissions in Microsoft Sentinel](/azure/sentinel/roles).
172+
For more information, see [Permissions in Microsoft Sentinel](roles).
173173

174174
## Next steps
175175

176176
For more information, see:
177177

178178
- [Get Started with Microsoft Sentinel](https://azure.microsoft.com/services/azure-sentinel/)
179-
- [Visualize and monitor your data with workbooks](/azure/sentinel/monitor-your-data)
179+
- [Visualize and monitor your data with workbooks](monitor-your-data)
180180
- [Microsoft Zero Trust Model](https://www.microsoft.com/security/business/zero-trust)
181181
- [Zero Trust Deployment Center](/security/zero-trust/?WT.mc_id=Portal-fx)
182182

0 commit comments

Comments
 (0)