You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
- name: Plan for unified security operations ## NEW article that covers specific to USX all up and link out to service topics
38
+
href: /defender-xdr/prerequisites ## PLACEHOLDER LINK
39
+
- name: Deploy ## Need new high level article. Put post deployment links at the end of article. Single article outlining deployment steps for Defender portal services. Point to services for more details. NEW article title: Deploy the Microsoft unified security operations
40
+
Items:
41
+
- name: Connect Microsoft Sentinel to Microsoft Defender
42
+
href: /defender-xdr/microsoft-sentinel-onboard
43
+
- name: Prevent attacks ## (Pre-breach) - Renamed from reduce risks. one article that summarizes how to do that with USX
44
+
items:
45
+
- name: Overview ## NEW Single article or perhaps a couple of articles that summarize our pre-breach protection philosophy, with links to relevant service articles. The article should align with the info about preventing attacks that;s in the datasheet. "Through a single portal, continuously monitor your digital environment, assess risk, and implement posture improvements using security controls across all platforms, cloud, and hybrid infrastructure".
46
+
href: /azure/sentinel/sap/deployment-attack-disrupt ## PLACEHOLDER LINK
47
+
- name: Microsoft Secure Score ## Write a single article or two that condenses all the info in the Protect against threats/Microsoft Secure Score section. Or because this is going away, we just link in all the articles? Or put them in reference?
- name: Detect threats ## Have each writer provide article and then we summarize in one article. Our outline and scope should align to datasheet: "Get visiblity into, and disrupt attacks in real time across identities, endpoints, email, cloud apps, data in hybrid and multicloud environments"
60
+
href: /azure/sentinel/threat-detection ## PLACEHOLDER LINK
61
+
- name: Hunt for threats ## Seperating this out because per PM hunting might happen in different scenarios. Also wanting it higher level as advanced hunting is one of the things highlighted for USX.
62
+
items:
63
+
- name: Overview
64
+
href: /defender-xdr/advanced-hunting-overview ## PLACEHOLDER - Need overview article about the hunting features across services. Advanced hunting, custom detections, hunts in Sentinel
65
+
- name: Search with advanced hunting
66
+
items:
67
+
- name: Overview
68
+
href: /defender-xdr/advanced-hunting-overview
69
+
- name: Advanced hunting in the Microsoft Defender portal
- name: Investigate incidents ## could be incidents, threats, posture findings. Need an overview article for USX. Current overviews (XDR/Sentinel) don't appear to be updated for USX.
90
+
items:
91
+
- name: Overview
92
+
href: /defender-xdr/investigate-incidents ## Would need update to apply to USX. Per Dianne, this isn't XDR specific.
93
+
- name: Alerts, incidents, and correlation
94
+
href: /defender-xdr/alerts-incidents-correlation
95
+
- name: Manage incidents
96
+
href: /defender-xdr/manage-incidents
97
+
- name: Investigate alerts
98
+
href: /defender-xdr/investigate-alerts
99
+
- name: Investigate incidents in Copilot for Security ## This article is specific to Sentinel in the context of using outside of USX and with XDR in USX. We don't think it applies to Sentinel only but need to confirm with PM. Austin thought title w/o mentioning Sentinel is misleading. We might need to leave this out of TOC or as part of plan/deploy to integrate Sentinel w/ Copilot features.
100
+
href: /azure/sentinel/sentinel-security-copilot
101
+
- name: Investigate with Microsoft Copilot in Microsoft Defender ## Copied entire section from XDR TOC
- name: Manage your unified SOC ## Need article w/ overview about settings? What else needs to go here? Several other things like permissions and costs would get referenced by planning guide.
154
+
items:
155
+
- name: Manage multiple tenants ## Work will start soon to integrate Sentinel into one or more of these articles. Copied in entire section from XDR library
title: Microsoft unified security operations platform # < 60 chars
4
+
summary: The unified security operations platform brings together the full capabilities of Microsoft Sentinel, Defender XDR, and generative AI.# < 160 chars
5
5
6
6
metadata:
7
-
title: Microsoft's unified security operations platform documentation # Required; page title displayed in search results. Include the brand. < 60 chars.
8
-
description: Learn about Microsoft's unified security operations platform. # Required; article description that is displayed in search results. < 160 chars.
9
-
services: office-365-security-compliance
10
-
ms.service: defender-xdr
7
+
title: Microsoft unified security operations platform documentation # Required; page title displayed in search results. Include the brand. < 60 chars.
8
+
description: The unified security operations platform brings together the full capabilities of Microsoft Sentinel, Defender XDR, and generative AI. # Required; article description that is displayed in search results. < 160 chars.
9
+
ms.service: unified-secops-platform #Required; use either service or product per approved list.
10
+
ms.subservice: usx
11
11
ms.topic: landing-page # Required
12
-
ms.collection: essentials-navigation
13
-
ms.custom: intro-hub-or-landing
12
+
ms.collection: usx-security # Optional; Remove if no collection is used.
14
13
author: cwatson-cat #Required; your GitHub user alias, with correct capitalization.
15
14
ms.author: cwatson #Required; microsoft alias of author; optional team alias.
0 commit comments