You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: unified-secops-platform/respond-threats-overview.md
+7-7Lines changed: 7 additions & 7 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -1,6 +1,6 @@
1
1
---
2
-
title: Threat detection in Microsoft's unified SecOps platform
3
-
description: Learn about the features that help detect and respond to threats in the Microsoft unified SecOps platform, ensuring comprehensive protection.
2
+
title: Threat response in Microsoft's unified SecOps platform
3
+
description: Learn about the features that help respond to threats in the Microsoft unified SecOps platform, ensuring comprehensive protection.
4
4
search.appverid: met150
5
5
ms.service: unified-secops-platform
6
6
ms.author: bagol
@@ -19,11 +19,11 @@ appliesto:
19
19
# Customer intent: As a security operations center business decision maker, I want to learn about the tools available to respond to threats automatically in Microsoft's unified security platform to help me determine whether it meets my organization's requirements.
20
20
---
21
21
22
-
# Respond to threats in Microsoft's unified SecOps platform
22
+
# Threat response in Microsoft's unified SecOps platform
23
23
24
24
As cyber threats evolve and data stores and tooling grow in complexity, security solutions must adapt and respond faster in real time. This article explains how the advanced response features provided across the Microsoft's unified SecOps platform help contain threats as they're detected and neutralize them before causing damage.
25
25
26
-
## Respond to threats across the Defender portal
26
+
## Threat response across the Defender portal
27
27
28
28
In the Defender portal, unified support for incident correlation and integrated threat intelligence across multiple attack surfaces helps security teams respond to threats effectively.
29
29
@@ -45,7 +45,7 @@ Continuous updates to threat intelligence feeds keep security teams ahead of eme
45
45
46
46
For more information, see [Uncover adversaries with threat intelligence in Microsoft's unified SecOps platform](threat-intelligence-overview.md).
47
47
48
-
## Respond to threats with Microsoft Defender XDR
48
+
## Microsoft Defender XDR threat response features
49
49
50
50
Microsoft Defender XDR unifies threat protection by automating security across endpoints, identities, email, apps, and cloud workloads, helping organizations respond to threats effectively.
51
51
@@ -81,7 +81,7 @@ Guided responses are shown together with other Copilot recommendations, as actio
81
81
82
82
For more information, see [Triage and investigate incidents with guided responses from Microsoft Copilot in Microsoft Defender](/defender-xdr/security-copilot-m365d-guided-response).
83
83
84
-
## Respond to threats with Microsoft Sentinel
84
+
## Microsoft Sentinel threat response features
85
85
86
86
Onboard Microsoft Sentinel to the Defender portal for a unified security operations platform, with cloud-native Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) features for intelligent security analytics and threat intelligence across the enterprise. This section describes how Microsoft Sentinel features add to your threat detection and response capabilities.
87
87
@@ -107,7 +107,7 @@ Common use cases for Microsoft Sentinel playbooks include data enrichment, bi-di
107
107
108
108
To create and manage these playbooks, specific roles and permissions are required, and extra charges may apply for the usage of Azure Logic Apps. For more information, see [Automate threat response with playbooks in Microsoft Sentinel](/azure/sentinel/automation/automate-responses-with-playbooks).
109
109
110
-
## Respond to potential threats with Microsoft Security Exposure Management
110
+
## Microsoft Security Exposure Management for potential threat response
111
111
112
112
[Microsoft Security Exposure Management](/security-exposure-management/microsoft-security-exposure-management) enables organizations to identify and mitigate potential attack paths before they can be exploited. Microsoft Security Exposure Management treats attack paths like incidents, providing a proactive approach to managing vulnerabilities and misconfigurations, and aiding in responses to in-progress attacks.
0 commit comments