Book Image

Microsoft Unified XDR and SIEM Solution Handbook

By : Raghu Boddu, Sami Lamppu
1 (1)
Book Image

Microsoft Unified XDR and SIEM Solution Handbook

1 (1)
By: Raghu Boddu, Sami Lamppu

Overview of this book

Tired of dealing with fragmented security tools and navigating endless threat escalations? Take charge of your cyber defenses with the power of Microsoft's unified XDR and SIEM solution. This comprehensive guide offers an actionable roadmap to implementing, managing, and leveraging the full potential of the powerful unified XDR + SIEM solution, starting with an overview of Zero Trust principles and the necessity of XDR + SIEM solutions in modern cybersecurity. From understanding concepts like EDR, MDR, and NDR and the benefits of the unified XDR + SIEM solution for SOC modernization to threat scenarios and response, you’ll gain real-world insights and strategies for addressing security vulnerabilities. Additionally, the book will show you how to enhance Secure Score, outline implementation strategies and best practices, and emphasize the value of managed XDR and SIEM solutions. That’s not all; you’ll also find resources for staying updated in the dynamic cybersecurity landscape. By the end of this insightful guide, you'll have a comprehensive understanding of XDR, SIEM, and Microsoft's unified solution to elevate your overall security posture and protect your organization more effectively.
Table of Contents (17 chapters)
Free Chapter
1
Case Study – High Tech Rapid Solutions Corporation
2
Part 1 – Zero Trust, XDR, and SIEM Basics and Unlocking Microsoft’s XDR and SIEM Solution
6
Part 2 – Microsoft’s Unified Approach to Threat Detection and Response
11
Part 3 – Mastering Microsoft’s Unified XDR and SIEM Solution – Strategies, Roadmap, and the Basics of Managed Solutions

Index

As this ebook edition doesn't have fixed pagination, the page numbers below are hyperlinked for reference only, based on the printed edition of this book.

A

Active Directory (AD) signals 191

Active Directory Certificate Services (AD CS) 53, 135

Active Directory Domain Services (AD DS) 54

Active Directory Federation Service (AD FS) 53, 135

adaptive access 48

Advanced Hunting 109, 120, 124

Advanced Threat Analytics (ATA) 52

anomalous token 59

API integrations 179

Application Governance 36, 118

Application SOC (AppSOC) 231

apps 11

Artificial Intelligence (AI) 33, 131

attack kill chain

in XDR and SIEM 134

attack path analysis 64

Attack Surface Reduction (ASR) 39, 154, 174, 222

Automated Investigation and Response (AIR) 39, 111, 112, 128

automatic attack disruption, Microsoft Defender XDR 127, 135, 136

key stages 136-138

reference link 135

AWS Foundational Security Best Practices standard 185...