Skip to content

Commit fe2e1ec

Browse files
authored
Merge pull request #3568 from MicrosoftDocs/main
[AutoPublish] main to live - 04/24 04:29 PDT | 04/24 16:59 IST
2 parents c376201 + 7be055a commit fe2e1ec

File tree

4 files changed

+14
-16
lines changed

4 files changed

+14
-16
lines changed

defender-endpoint/linux-install-with-ansible.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -115,7 +115,7 @@ Pull the [installer bash script](https://github.com/microsoft/mdatp-xplat/tree/m
115115

116116
### Create Ansible YAML files
117117

118-
Create installation YAML file. You can also download the file directly from [GitHub](/defender-endpoint/linux-support-events)
118+
Create installation YAML file. You can also download the file directly from [GitHub](https://github.com/microsoft/mdatp-xplat/blob/master/linux/installation/third_party_installation_playbooks/ansible.install_mdatp_simplified.yaml).
119119

120120
```bash
121121
- name: Install and Onboard MDE

defender-xdr/before-you-begin-defender-experts.md

Lines changed: 6 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
---
2-
title: Key infrastructure requirements before enrolling in the Microsoft Defender Experts for Hunting service
2+
title: Before you begin using the Microsoft Defender Experts for Hunting service
33
ms.reviewer:
4-
description: This section outlines the key infrastructure requirements you must meet and important information on data access and compliance.
4+
description: To enable us to get started with the defender experts managed service, we require the following prerequisites
55
ms.service: defender-experts-for-hunting
66
ms.author: vpattnaik
77
author: vpattnai
@@ -18,7 +18,7 @@ ms.custom:
1818
- cx-ti
1919
- cx-ean
2020
search.appverid: met150
21-
ms.date: 04/07/2025
21+
ms.date: 04/24/2025
2222
---
2323

2424
# Before you begin using Defender Experts for Hunting
@@ -75,21 +75,21 @@ Any detection that's not from Microsoft Defender products (for example, detectio
7575

7676
[Ask Defender Experts](experts-on-demand.md) is intended to provide a better understanding of complex threats affecting your organization. It focuses on products included in Microsoft Defender XDR (Defender for Endpoint, Defender for Office 365, Defender for Cloud Apps, and Defender for Identity). [See sample questions you can ask Defender Experts](experts-on-demand.md#sample-questions-you-can-ask-from-defender-experts).
7777

78-
Defender Experts for Hunting customers are assigned 10 Ask Defender Experts credits, which you can use to submit questions, at the start of each calendar quarter. Unused credits from the current quarter roll up to the next one. You can use up to 20 credits only per quarter. All unused credits expire by the end of the calendar year or at the end of your subscription term, whichever comes first.
78+
Defender Experts for Hunting customers are assigned 10 Ask Defender Experts credits, which you can use to submit questions, at the start of each calendar quarter. Unused credits from the current quarter roll up to the next one. You can use up to 20 credits only per quarter. All unused credits expire by the end of the calendar year or at the end of your subscription term, whichever comes first.
7979

8080
[Learn more about Microsoft's commercial licensing terms](https://www.microsoft.com/licensing/terms/productoffering/Microsoft365/MCA)
8181

8282
## Access requirements
8383

84-
Anyone from your organization can [apply for the Defender Experts for Hunting service](#apply-for-microsoft-defender-experts-for-hunting-service). However, you need to work with your Commercial Executive to transact the SKU.
84+
Anyone from your organization can [apply for the Defender Experts for Hunting service](#apply-for-microsoft-defender-experts-for-hunting-service). However, you need to work with your Commercial Executive to transact the SKU.
8585

8686
You might need certain roles and permissions to fully access the service capabilities. Refer to [Custom roles in role-based access control for Microsoft Defender XDR](custom-roles.md) for details.
8787

8888
## Service availability and data protection
8989

9090
Defender Experts for Hunting is a managed threat hunting service that proactively hunts for threats across endpoints, email, identity, and cloud apps. To carry out hunting on your behalf, Microsoft experts need access to your Microsoft Defender XDR advanced hunting data. Enrolling in this service means you're granting permission to Microsoft experts to access the said data.
9191

92-
The following sections enumerate additional information about the service's data usage, compliance, and availability. For more information about Microsoft's commitment in valuing and protecting your data, visit the [Trust Center](https://www.microsoft.com/trust-center/product-overview) then scroll down to **Additional products and services** > **Managed Security Services** > [**Microsoft Defender Experts**](https://aka.ms/trustcenter-defenderexperts).
92+
The following sections enumerate additional information about the service's data usage, compliance, and availability. For more information about Microsoft's commitment in valuing and protecting your data, visit the [Trust Center](https://www.microsoft.com/trust-center/product-overview) then scroll down to **Additional products and services** > **Managed Security Services** > **Microsoft Defender Experts**.
9393

9494
### Data collection, usage, and retention
9595

defender-xdr/before-you-begin-xdr.md

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
---
2-
title: Before you begin using Defender Experts for XDR
2+
title: Before you begin using the Microsoft Defender Experts for XDR service
33
ms.reviewer:
4-
description: To enable us to get started with this managed service, we require the following licensing prerequisites
4+
description: To enable us to get started with the defender experts managed service, we require the following licensing prerequisites
55
ms.service: defender-experts-for-xdr
66
ms.author: vpattnaik
77
author: vpattnai
@@ -17,10 +17,10 @@ ms.custom:
1717
- cx-ti
1818
- cx-dex
1919
search.appverid: met150
20-
ms.date: 04/08/2025
20+
ms.date: 04/24/2025
2121
---
2222

23-
# Before you begin
23+
# Before you begin using Defender Experts for XDR
2424

2525
**Applies to:**
2626

@@ -71,7 +71,7 @@ Defender Experts for XDR requests for certain roles and permissions for you to f
7171

7272
Defender Experts for XDR is a managed extended detection and response service that proactively hunts for threats across endpoints, email, identity, and cloud apps. To carry out hunting on your behalf, Microsoft experts need access to your Microsoft Defender XDR advanced hunting data. Purchasing this service means you're granting permission to Microsoft experts to access the said data.
7373

74-
The following sections enumerate additional information about the service's data usage, compliance, and availability. For more information about Microsoft's commitment in valuing and protecting your data, visit the [Trust Center](https://www.microsoft.com/en-us/trust-center/product-overview) then scroll down to **Additional products and services** > **Managed Security Services** > **[Microsoft Defender Experts](https://aka.ms/trustcenter-defenderexperts)**.
74+
The following sections enumerate additional information about the service's data usage, compliance, and availability. For more information about Microsoft's commitment in valuing and protecting your data, visit the [Trust Center](https://www.microsoft.com/en-us/trust-center/product-overview) then scroll down to **Additional products and services** > **Managed Security Services** > **Microsoft Defender Experts**.
7575

7676
### Data collection, usage, and retention
7777

unified-secops-platform/microsoft-sentinel-onboard.md

Lines changed: 2 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -29,14 +29,12 @@ ms.date: 03/17/2025
2929

3030
# Connect Microsoft Sentinel to the Microsoft Defender portal
3131

32-
Microsoft Sentinel is generally available within Microsoft's unified security operations (SecOps) platform in the Microsoft Defender portal. When you onboard Microsoft Sentinel to the Defender portal with Microsoft Defender XDR, you unify capabilities like incident management and advanced hunting. Reduce tool switching and build a more context-focused investigation that expedites incident response and stops breaches faster. For more information, see:
32+
Microsoft Sentinel is generally available within Microsoft's unified security operations (SecOps) platform in the Microsoft Defender portal, with or without Microsoft Defender XDR or an E5 license. When you onboard Microsoft Sentinel to the Defender portal together Microsoft Defender XDR, you unify capabilities like incident management and advanced hunting. Reduce tool switching and build a more context-focused investigation that expedites incident response and stops breaches faster. For more information, see:
3333

3434
- [What is Microsoft's unified security operations platform?](overview-unified-security.md)
3535
- [Microsoft Sentinel in the Microsoft Defender portal](https://go.microsoft.com/fwlink/p/?linkid=2263690)
3636
- [Microsoft Defender XDR integration with Microsoft Sentinel](/azure/sentinel/microsoft-365-defender-sentinel-integration)
3737

38-
For preview, Microsoft Sentinel is available in the Defender portal without Microsoft Defender XDR or an E5 license.
39-
4038
## Prerequisites
4139

4240
Before you begin, review the feature documentation to understand the product changes and limitations.
@@ -110,7 +108,7 @@ After your workspace is connected, the banner on the **Overview** page shows tha
110108

111109
## Explore Microsoft Sentinel features in the Defender portal
112110

113-
After you connect your workspace to the Defender portal, **Microsoft Sentinel** is on the left-hand side navigation pane. If you have Defender XDR enabled, pages like **Overview**, **Incidents**, and **Advanced Hunting** have unified data from the primary workspace for Microsoft Sentinel and Defender XDR. If you don't have Defender XDR enabled, these pages just include data from Microsoft Sentinel (preview). For more information about the unified capabilities and differences between portals, see [Microsoft Sentinel in the Microsoft Defender portal](https://go.microsoft.com/fwlink/p/?linkid=2263690).
111+
After you connect your workspace to the Defender portal, **Microsoft Sentinel** is on the left-hand side navigation pane. If you have Defender XDR enabled, pages like **Overview**, **Incidents**, and **Advanced Hunting** have unified data from the primary workspace for Microsoft Sentinel and Defender XDR. If you don't have Defender XDR enabled, these pages just include data from Microsoft Sentinel. For more information about the unified capabilities and differences between portals, see [Microsoft Sentinel in the Microsoft Defender portal](https://go.microsoft.com/fwlink/p/?linkid=2263690).
114112

115113
Many of the existing Microsoft Sentinel features are integrated into the Defender portal. For these features, notice that the experience between Microsoft Sentinel in the Azure portal and Defender portal are similar. Use the following articles to help you start working with Microsoft Sentinel in the Defender portal. When using these articles, keep in mind that your starting point in this context is the [Defender portal](https://security.microsoft.com/) instead of the Azure portal.
116114

0 commit comments

Comments
 (0)