You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
CONN-4195: rename app "microsoft defender for cloud" to "azure security defender for cloud" (#5099)
* CONN-4195: renamed app Microsoft Defender for Cloud to Azure Security - Defender for Cloud
* Updated app tile page
* minor fixes
* minor fix
* minor formatting
* Update blog-service/2024/12-31.md
Co-authored-by: Kim (Sumo Logic) <[email protected]>
---------
Co-authored-by: Kim (Sumo Logic) <[email protected]>
Co-authored-by: Jagadisha V <[email protected]>
Copy file name to clipboardExpand all lines: blog-service/2024/12-31.md
+3-3Lines changed: 3 additions & 3 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -161,17 +161,17 @@ We're excited to introduce Copilot, an AI-powered assistant that accelerates log
161
161
162
162
### December 02, 2024 (Apps)
163
163
164
-
#### Microsoft Defender for Cloud
164
+
#### Azure Security - Defender for Cloud
165
165
166
-
We're excited to introduce the new Microsoft Defender for Cloud app for Sumo Logic. This app helps you to collect the alerts, security recommendation, and regulatory compliance logs using the Sumo Logic Cloud-to-Cloud Azure Event Hub Source and by configuring the continuous export using the Event Hub instance details in the Azure portal. Key features of the Microsoft Defender for Cloud app include:
166
+
We're excited to introduce the new Azure Security - Defender for Cloud app for Sumo Logic. This app helps you to collect the alerts, security recommendation, and regulatory compliance logs using the Sumo Logic Cloud-to-Cloud Azure Event Hub Source and by configuring the continuous export using the Event Hub instance details in the Azure portal. Key features of the Azure Security - Defender for Cloud app include:
167
167
168
168
- Gain real-time visibility into security alerts across your Azure environment, categorized by severity (High, Medium, Low, and Informational).
169
169
- Monitor trends in alert activity over time to identify spikes and recurring threats.
170
170
- Leverage detailed alert summaries and remediation steps for effective threat mitigation.
171
171
- Track compliance performance across critical standards, including FedRAMP, PCI DSS 4, CIS Azure Foundations, and Microsoft Cloud Security Benchmark.
172
172
- Analyze threats by categories like data exfiltration, unauthorized access, and account breaches.
173
173
174
-
Explore our technical documentation [here](/docs/integrations/microsoft-azure/microsoft-defender-for-cloud/) to learn how to set up and use the Microsoft Defender for Cloud app for Sumo Logic.
174
+
Explore our technical documentation [here](/docs/integrations/microsoft-azure/azure-security-defender-for-cloud/) to learn how to set up and use the Azure Security - Defender for Cloud app for Sumo Logic.
The Sumo Logic app for Microsoft Defender for Cloud is a powerful solution designed to provide Azure cloud security analysts with actionable insights into their cloud security posture. By integrating with Microsoft Defender for Cloud, this app delivers advanced monitoring, alerting, and compliance tracking capabilities through purpose-built dashboards tailored to meet the needs of security teams.
11
+
The Sumo Logic app for Azure Security - Defender for Cloud is a powerful solution designed to provide Azure cloud security analysts with actionable insights into their cloud security posture. By integrating with Azure Security - Defender for Cloud, this app delivers advanced monitoring, alerting, and compliance tracking capabilities through purpose-built dashboards tailored to meet the needs of security teams.
12
12
13
-
Key features of the Microsoft Defender for Cloud app include:
13
+
Key features of the Azure Security - Defender for Cloud app include:
14
14
15
15
- Gain real-time visibility into security alerts across your Azure environment, categorized by severity (High, Medium, Low, and Informational).
16
16
- Monitor trends in alert activity over time to identify spikes and recurring threats.
@@ -25,12 +25,12 @@ Key features of the Microsoft Defender for Cloud app include:
25
25
- Identify areas requiring immediate action to ensure regulatory adherence for your Azure resources.
26
26
27
27
:::info
28
-
This app includes [built-in monitors](#microsoft-defender-for-cloud-monitors). For details on creating custom monitors, refer to [Create monitors for Microsoft Defender for Cloud app](#create-monitors-for-microsoft-defender-for-cloud-app).
28
+
This app includes [built-in monitors](#azure-security---defender-for-cloud-monitors). For details on creating custom monitors, refer to [Create monitors for Azure Security Defender for Cloud app](#create-monitors-for-azure-security---defender-for-cloud-app).
29
29
:::
30
30
31
31
## Log types
32
32
33
-
The Microsoft Defender for Cloud app uses the following logs:
33
+
The Azure Security - Defender for Cloud app uses the following logs:
@@ -41,7 +41,7 @@ The Microsoft Defender for Cloud app uses the following logs:
41
41
To forward Microsoft Defender events to Sumo Logic, you can set up an efficient pipeline: **Microsoft Defender** > **Event Hub** > **Sumo Logic (Hosted Collector)**. This setup ensures that security events from Microsoft Defender are seamlessly ingested into Sumo Logic for monitoring and analysis.
42
42
43
43
1.**[Create a Sumo Logic Azure Event Hub Source](/docs/send-data/collect-from-other-data-sources/azure-monitoring/ms-azure-event-hubs-source/)**. Configure an Event Hub source to receive events from the Azure platform. This will act as the endpoint for the data pipeline.
44
-
1.**[Set up continuous export in Azure](https://learn.microsoft.com/en-us/azure/defender-for-cloud/continuous-export)**. Within the Azure portal, configure the Microsoft Defender for Cloud to export its security events to the Event Hub instance created in the previous step. Continuous export ensures that the events such as alerts, recommendations, and regulatory compliance updates are forwarded in near real-time.
44
+
1.**[Set up continuous export in Azure](https://learn.microsoft.com/en-us/azure/defender-for-cloud/continuous-export)**. Within the Azure portal, configure the Azure Security - Defender for Cloud to export its security events to the Event Hub instance created in the previous step. Continuous export ensures that the events such as alerts, recommendations, and regulatory compliance updates are forwarded in near real-time.
## Create monitors for Microsoft Defender for Cloud app
351
+
## Create monitors for Azure Security - Defender for Cloud app
352
352
353
353
import CreateMonitors from '../../reuse/apps/create-monitors.md';
354
354
355
355
<CreateMonitors/>
356
356
357
-
### Microsoft Defender for Cloud monitors
357
+
### Azure Security - Defender for Cloud monitors
358
358
359
359
| Name | Description | Trigger Type (Critical / Warning / MissingData) | Alert Condition |
360
360
|:--|:--|:--|:--|
@@ -386,13 +386,13 @@ If you are not receiving any alerts from the Microsoft Defender to the Event Hub
386
386
There may be a delay in forwarding alerts from Microsoft Defender to the Event Hub instance. If you experience significant delays, reach out to Azure Support for assistance.
387
387
:::
388
388
389
-
## Upgrade/Downgrade the Microsoft Defender for Cloud app (Optional)
389
+
## Upgrade/Downgrade the Azure Security - Defender for Cloud app (Optional)
390
390
391
391
import AppUpdate from '../../reuse/apps/app-update.md';
392
392
393
393
<AppUpdate/>
394
394
395
-
## Uninstalling the Microsoft Defender for Cloud app (Optional)
395
+
## Uninstalling the Azure Security - Defender for Cloud app (Optional)
396
396
397
397
import AppUninstall from '../../reuse/apps/app-uninstall.md';
0 commit comments