Blog

All Microsoft 365 Defender Permissions Menu Locations

Managing permissions in all 4 Microsoft 365 Defender platforms. The menus for granting permissions in the Microsoft 365 Defender platforms are hidden in a maze of Microsoft Docs articles. It took experienced Microsoft security administrators at CyberMSI multiple hours to try and pin down where the menus were without having the global admin privileges available. […]

Read More about All Microsoft 365 Defender Permissions Menu Locations

Why Are There 4 Different Microsoft Defender for Cloud VM Security Extensions?

Use extensions to customize Microsoft Defender for Cloud VM security. Microsoft Defender for Cloud uses extensions to allow users to add features to their VMs. These extensions are normally used to give VMs some new functionality, and a noticeable number of these added functionalities are used for security reasons. In this blog, we discuss what […]

Read More about Why Are There 4 Different Microsoft Defender for Cloud VM Security Extensions?

AD Domain Service and Defender for Identity Demystified

Understanding hybrid environment security with relative ease. Some members of an organization’s IT staff may be concerned about subjects like “domain services” and “hybrid environments” because they may view it as a complicated transition that affects their on-premises infrastructure. In addition to the complications of implementing the system, there will also be complications when it […]

Read More about AD Domain Service and Defender for Identity Demystified

What Do I Get When I Turn on Microsoft Defender for Cloud?

Determine the cybersecurity return on investment in Microsoft Defender for Cloud. Microsoft is very keen on selling their users security services like Microsoft Defender for Cloud, but it takes considerable effort and time to understand what each of them does. A Microsoft security admin assigned to Microsoft Defender for Cloud must also explain what Microsoft […]

Read More about What Do I Get When I Turn on Microsoft Defender for Cloud?

AIR Is Not Just Automation

Using Microsoft 365 Defender AIR for broader incident management. Microsoft 365 Defender’s Automated Investigation and Response (AIR) is a solution for investigating and remediating known incidents. Depending on the level of automation an organization selects, AIR can not only automatically resolve security incidents. It can also be used to assist with analyst-driven investigations as well. […]

Read More about AIR Is Not Just Automation

Kubernetes for Security Admins and Analysts

Implement Kubernetes security in Microsoft Sentinel using a mix of old and new methods. Microsoft Kubernetes Service (MKS) and Container Registries have been some of the fastest growing cloud services in Microsoft. This is because of how scalable and flexible Kubernetes is for software developers. With a sizable amount of Kubernetes entering the IT environment, […]

Read More about Kubernetes for Security Admins and Analysts

Squeeze More Data Out of Your Analytic Rules

Enrich investigations with the new Alert Enrichment. The Microsoft Sentinel team has just recently come out with “Alert Enrichment” which is a replacement for the old “Extend” system. This is good news for analysts because they can now customize the nodes in their Microsoft Sentinel investigation graphs without having to write KQL statements that sometimes […]

Read More about Squeeze More Data Out of Your Analytic Rules

Use JSON to Improve Microsoft Sentinel Operations

Be more efficient and unlock new tools with JSON. When working on security in Microsoft Sentinel it is important to understand how the components of the platform work. JSON is one of the major components of Microsoft Sentinel because it uses value pairs to communicate how some of the most important features are supposed to […]

Read More about Use JSON to Improve Microsoft Sentinel Operations

How do I Format Microsoft Sentinel Comments?

Clean up comments with a text editor and HTML tags. Microsoft Sentinel allows analysts to add comments to incidents, but unfortunately in preview state we still don’t have the ability to format the text in the comment boxes. When an analyst leaves a comment, the words chop in half as soon as they reach the […]

Read More about How do I Format Microsoft Sentinel Comments?
Scroll to Top