Skip to content

Commit e486559

Browse files
authored
Merge pull request #247589 from dcurwin/episode35
Episode 35
2 parents f062c30 + d2d167f commit e486559

File tree

2 files changed

+42
-1
lines changed

2 files changed

+42
-1
lines changed

articles/defender-for-cloud/TOC.yml

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -860,7 +860,9 @@
860860
- name: Agentless Container Posture Management
861861
href: episode-thirty-three.md
862862
- name: Understanding the DevOps Threat Matrix
863-
href: episode-thirty-four.md
863+
href: episode-thirty-four.md
864+
- name: Security alert correlation
865+
href: episode-thirty-five.md
864866
- name: Manage user data
865867
href: privacy.md
866868
- name: Microsoft Defender for IoT documentation
Lines changed: 39 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,39 @@
1+
---
2+
title: Security alert correlation | Defender for Cloud in the Field
3+
description: Security alert correlation
4+
ms.topic: reference
5+
ms.date: 08/08/2023
6+
---
7+
8+
# Security alert correlation
9+
10+
**Episode description**: In this episode of Defender for Cloud in the Field, Daniel Davrayev joins Yuri Diogenes to talk about security alert correlation capability in Defender for Cloud. Daniel talks about the importance of have a built-in capability to correlate alerts in Defender for Cloud, how this saves time for SOC analysts to investigate alert and respond to potential threats. Daniel also explains how data correlation works and demonstrate how this correlation appears in Defender for Cloud dashboard as a security incident.
11+
12+
<br>
13+
<br>
14+
<iframe src="https://aka.ms/docs/player?id=6573561d-70a6-4b4c-ad16-9efe747c9a61" width="1080" height="530" allowFullScreen="true" frameBorder="0"></iframe>
15+
16+
- [00:00](/shows/mdc-in-the-field/security-alert-correlation#time=00m00s) - Intro
17+
- [02:15](/shows/mdc-in-the-field/security-alert-correlation#time=02m15s) - How Defender for Cloud handles alert prioritization
18+
- [04:29](/shows/mdc-in-the-field/security-alert-correlation#time=04m29s) - How Defender for Cloud can help with alert correlation
19+
- [07:05](/shows/mdc-in-the-field/security-alert-correlation#time=07m05s) - How Defender for Cloud creates alerts correlation
20+
- [09:06](/shows/mdc-in-the-field/security-alert-correlation#time=09m06s) - Does alert correlation works across different Defender for Cloud plans?
21+
- [11:42](/shows/mdc-in-the-field/security-alert-correlation#time=11m42s) - Demonstration
22+
23+
## Recommended resources
24+
25+
- [Learn more](https://techcommunity.microsoft.com/t5/microsoft-defender-for-cloud/correlating-alerts-in-microsoft-defender-for-cloud/ba-p/3839209)
26+
- Subscribe to [Microsoft Security on YouTube](https://www.youtube.com/playlist?list=PL3ZTgFEc7LysiX4PfHhdJPR7S8mGO14YS)
27+
- Learn more about [Microsoft Security](https://msft.it/6002T9HQY)
28+
29+
- Follow us on social media:
30+
31+
- [LinkedIn](https://www.linkedin.com/showcase/microsoft-security/)
32+
- [Twitter](https://twitter.com/msftsecurity)
33+
34+
- Join our [Tech Community](https://aka.ms/SecurityTechCommunity)
35+
36+
## Next steps
37+
38+
> [!div class="nextstepaction"]
39+
> [New AWS Connector in Microsoft Defender for Cloud](episode-one.md)

0 commit comments

Comments
 (0)