Тёмный
No video :(

Rich Microsoft Sentinel Notifications in Teams: Notify and take action! 

AzureVlog
Подписаться 4,6 тыс.
Просмотров 3,5 тыс.
50% 1

Unlock the full potential of Microsoft Sentinel and Microsoft Teams integration in this comprehensive video tutorial. Learn how to streamline your cybersecurity incident response by creating dedicated teams for collaboration and automating real-time notifications with Adaptive Cards. This step-by-step guide walks you through two powerful methods to enhance your organization's security posture:
1. Harness the power of Microsoft Teams to create dedicated incident response teams, improving communication and collaboration during the resolution process.
2. Leverage Automation Rules, Logic Apps, and Adaptive Cards to send incident notifications within Microsoft Teams, enabling immediate remediation actions right from the chat interface.
By implementing these strategies, you'll not only strengthen your organization's security but also optimize your team's workflow, saving time and resources in the process. Don't miss out on this game-changing tutorial that will transform the way you manage and respond to cybersecurity incidents!
#MicrosoftSentinel #MicrosoftTeams #Cybersecurity #IncidentResponse #Collaboration #Automation #Infosec

Опубликовано:

 

10 апр 2023

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 8   
@COii3153
@COii3153 4 месяца назад
Kudos to you mate, great high level tutorial. Implementing similar to gather response for risky users :).
@progod6017
@progod6017 Год назад
jus lemme say I really appreciate your content.
@adventuresofa9jaguy322
@adventuresofa9jaguy322 9 месяцев назад
Please can you create a tutorial showing how u created the hosts design in logic apps? been struggling with it
@progod6017
@progod6017 Год назад
one question, do you believe that users should be given the option to isolate a machine? the adaptive card may not provide all the info available, so I was thinking: maybe the user should investigate the incident in sentinel b4 he gets to isolate a vm.
@progod6017
@progod6017 Год назад
The bi-directional sync. between Sentinel & Defender 365 does certainly synchronize all incidents both sides. However, even if all alerts of one incident get closed in Security Center (Defender), the Sentinel incident will still be open. Do you know any fast fix for this? Im currently working on a playbook to mitigate this uncomfort. If you want we can link up on teams and talk.
@remydepoorter
@remydepoorter Год назад
How to deploy content hub solutions quickly with a script ?
@YourDistantCuzn
@YourDistantCuzn Год назад
Turn on the repository feature in Sentinel
Далее
Мухочирон эхтиёт бошед!
01:31
Просмотров 117 тыс.
아이스크림으로 진짜 친구 구별하는법
00:17
would you eat this? #shorts
00:39
Просмотров 1,1 млн
Relationship Between Logic Apps & Power Automate
14:37
Managing Microsoft Sentinel using GIT repositories
17:55
Мухочирон эхтиёт бошед!
01:31
Просмотров 117 тыс.