Elena Canorea
Communications Lead
Microsoft Sentinel ist ein cloudbasiertes Tool, das bei der Verwaltung von Sicherheitsereignissen und -informationen (SIEM) sowie bei automatisierten Sicherheitsorchestrierungs- und Reaktionsaufgaben (SOAR) unterstützt.
Daten von Geräten, Anwendungen oder Benutzern werden in der Cloud gesammelt, und die Reaktion auf Bedrohungen kann durch vordefinierte Aufgaben und Workflows automatisiert werden.
Sentinel kann zur Analyse von Sicherheitsbedrohungen und zur Alarmierung bei Unternehmensbedrohungen verwendet werden (die priorisiert und in Listen angezeigt werden können) sowie zur Reaktion auf diese Bedrohungen. Dies ist der Zweck von Sicherheitsinformations- und Ereignismanagement-Systemen (SIEM), die Bedrohungen erkennen, analysieren und darauf reagieren. Dadurch wird eine Aufgabe automatisiert, die je nach Sicherheitsanforderungen skalierbar ist.
Laut der Studie “The Total Economic Impact™ of Microsoft Azure” von Forrester ist Sentinel um 48 % kostengünstiger und 67 % schneller zu implementieren als andere lokale SIEM-Systeme.
Zu den Funktionen von Sentinel gehören:
Sentinel bezieht Echtzeitdaten des Unternehmens über Datenquellen wie Office 365, Microsoft 365 Defender oder Azure Kubernetes Service mithilfe von Connectors. Da es kompatibel mit offenen Standardformaten wie CEF und Syslog ist, kann es Daten aus verschiedenen Quellen sammeln.
Darüber hinaus integriert es sich in Anwendungen des Unternehmens und andere Sicherheitsprodukte. Bei Bedarf können weitere Sicherheitsinformationen und maschinelle Lernmodelle hinzugefügt werden.
Sicherheitsbedrohungen können mithilfe interner Such- und Abfragewerkzeuge untersucht werden. Um Bedrohungen zu finden, die nicht von geplanten Analysen erkannt werden, gibt es die integrierten Suchabfragen von Microsoft Sentinel. Durch die Durchführung dieser Abfragen in den Datenquellen muss nicht darauf gewartet werden, dass das System eine Bedrohung automatisch erkennt.
Die Erkenntnisse aus diesen Abfragen können auch verwendet werden, um benutzerdefinierte Erkennungsregeln zu entwerfen, die bei der Bekämpfung von Bedrohungen helfen.
Microsoft Sentinel umfasst bereits:
Darüber hinaus integriert sich Azure Firewall in Azure Sentinel, um bei Erkennungs- und Präventionsaufgaben zu unterstützen. Dieses Tool erkennt Netzwerkverkehr mit potenziell schädlichen Aktivitäten und eliminiert mögliche Bedrohungen schnell.
Microsoft Sentinel verfügt über integriertes maschinelles Lernen, um die Erkennung und Analyse von Bedrohungen zu verbessern. Künstliche Intelligenz wird durch die Analyse von Milliarden von Signalen pro Tag “trainiert”.
Mit Microsoft Sentinel können benutzerdefinierte Datenberichte erstellt werden. Diese Berichte dienen zur Visualisierung von Daten und erfordern keine umfangreichen Programmierkenntnisse, was Mitarbeitern mit geringeren technischen Kenntnissen zugutekommt.
Der Hauptvorteil von Azure Sentinel besteht darin, die Sicherheit der Cloud zu stärken und die Sammlung von Daten aus verschiedenen Quellen (Servern, Benutzern, Anwendungen usw.) in einem einzigen Dashboard zu vereinfachen. Dies macht das Tool ideal für Unternehmen, die bereits in der Cloud sind oder dorthin migrieren. Es eignet sich auch für Unternehmen jeder Größe.
Die Verwendung von künstlicher Intelligenz beschleunigt die Identifizierung potenzieller Bedrohungen. Die Anpassungsfähigkeit ermöglicht es, die Bedrohungserkennung und -visualisierung in einem Kontrollpanel anzupassen.
Darüber hinaus kann es bei Bedarf an die Sicherheitsanforderungen jederzeit angepasst werden, indem die Infrastruktur erweitert und Wartungsarbeiten erleichtert werden.
Bei Plain Concepts sind wir Experten für Cybersicherheit. Wir entwickeln maßgeschneiderte Strategien, um Ihre Daten zu sichern, externe Zugriffe zu verstärken oder Informationen leicht zu migrieren. Wir sind spezialisiert auf Azure und Microsoft Office 365 und sind zudem Partner des spanischen Centro Criptológico Nacional (CCN), was uns dazu befähigt, die Richtlinien des Nationalen Sicherheitsschemas.
Elena Canorea
Communications Lead
Cookie | Duration | Description |
---|---|---|
__cfduid | 1 year | The cookie is used by cdn services like CloudFare to identify individual clients behind a shared IP address and apply security settings on a per-client basis. It does not correspond to any user ID in the web application and does not store any personally identifiable information. |
__cfduid | 29 days 23 hours 59 minutes | The cookie is used by cdn services like CloudFare to identify individual clients behind a shared IP address and apply security settings on a per-client basis. It does not correspond to any user ID in the web application and does not store any personally identifiable information. |
__cfduid | 1 year | The cookie is used by cdn services like CloudFare to identify individual clients behind a shared IP address and apply security settings on a per-client basis. It does not correspond to any user ID in the web application and does not store any personally identifiable information. |
__cfduid | 29 days 23 hours 59 minutes | The cookie is used by cdn services like CloudFare to identify individual clients behind a shared IP address and apply security settings on a per-client basis. It does not correspond to any user ID in the web application and does not store any personally identifiable information. |
_ga | 1 year | This cookie is installed by Google Analytics. The cookie is used to calculate visitor, session, campaign data and keep track of site usage for the site's analytics report. The cookies store information anonymously and assign a randomly generated number to identify unique visitors. |
_ga | 1 year | This cookie is installed by Google Analytics. The cookie is used to calculate visitor, session, campaign data and keep track of site usage for the site's analytics report. The cookies store information anonymously and assign a randomly generated number to identify unique visitors. |
_ga | 1 year | This cookie is installed by Google Analytics. The cookie is used to calculate visitor, session, campaign data and keep track of site usage for the site's analytics report. The cookies store information anonymously and assign a randomly generated number to identify unique visitors. |
_ga | 1 year | This cookie is installed by Google Analytics. The cookie is used to calculate visitor, session, campaign data and keep track of site usage for the site's analytics report. The cookies store information anonymously and assign a randomly generated number to identify unique visitors. |
_gat_UA-326213-2 | 1 year | No description |
_gat_UA-326213-2 | 1 year | No description |
_gat_UA-326213-2 | 1 year | No description |
_gat_UA-326213-2 | 1 year | No description |
_gid | 1 year | This cookie is installed by Google Analytics. The cookie is used to store information of how visitors use a website and helps in creating an analytics report of how the wbsite is doing. The data collected including the number visitors, the source where they have come from, and the pages viisted in an anonymous form. |
_gid | 1 year | This cookie is installed by Google Analytics. The cookie is used to store information of how visitors use a website and helps in creating an analytics report of how the wbsite is doing. The data collected including the number visitors, the source where they have come from, and the pages viisted in an anonymous form. |
_gid | 1 year | This cookie is installed by Google Analytics. The cookie is used to store information of how visitors use a website and helps in creating an analytics report of how the wbsite is doing. The data collected including the number visitors, the source where they have come from, and the pages viisted in an anonymous form. |
_gid | 1 year | This cookie is installed by Google Analytics. The cookie is used to store information of how visitors use a website and helps in creating an analytics report of how the wbsite is doing. The data collected including the number visitors, the source where they have come from, and the pages viisted in an anonymous form. |
attributionCookie | session | No description |
cookielawinfo-checkbox-analytics | 1 year | Set by the GDPR Cookie Consent plugin, this cookie is used to record the user consent for the cookies in the "Analytics" category . |
cookielawinfo-checkbox-necessary | 1 year | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary". |
cookielawinfo-checkbox-necessary | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary". |
cookielawinfo-checkbox-necessary | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary". |
cookielawinfo-checkbox-necessary | 1 year | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary". |
cookielawinfo-checkbox-non-necessary | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Non Necessary". |
cookielawinfo-checkbox-non-necessary | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Non Necessary". |
cookielawinfo-checkbox-non-necessary | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Non Necessary". |
cookielawinfo-checkbox-non-necessary | 1 year | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Non Necessary". |
cookielawinfo-checkbox-performance | 1 year | Set by the GDPR Cookie Consent plugin, this cookie is used to store the user consent for cookies in the category "Performance". |
cppro-ft | 1 year | No description |
cppro-ft | 7 years 1 months 12 days 23 hours 59 minutes | No description |
cppro-ft | 7 years 1 months 12 days 23 hours 59 minutes | No description |
cppro-ft | 1 year | No description |
cppro-ft-style | 1 year | No description |
cppro-ft-style | 1 year | No description |
cppro-ft-style | session | No description |
cppro-ft-style | session | No description |
cppro-ft-style-temp | 23 hours 59 minutes | No description |
cppro-ft-style-temp | 23 hours 59 minutes | No description |
cppro-ft-style-temp | 23 hours 59 minutes | No description |
cppro-ft-style-temp | 1 year | No description |
i18n | 10 years | No description available. |
IE-jwt | 62 years 6 months 9 days 9 hours | No description |
IE-LANG_CODE | 62 years 6 months 9 days 9 hours | No description |
IE-set_country | 62 years 6 months 9 days 9 hours | No description |
JSESSIONID | session | The JSESSIONID cookie is used by New Relic to store a session identifier so that New Relic can monitor session counts for an application. |
viewed_cookie_policy | 11 months | The cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data. |
viewed_cookie_policy | 1 year | The cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data. |
viewed_cookie_policy | 1 year | The cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data. |
viewed_cookie_policy | 11 months | The cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data. |
VISITOR_INFO1_LIVE | 5 months 27 days | A cookie set by YouTube to measure bandwidth that determines whether the user gets the new or old player interface. |
wmc | 9 years 11 months 30 days 11 hours 59 minutes | No description |
Cookie | Duration | Description |
---|---|---|
__cf_bm | 30 minutes | This cookie, set by Cloudflare, is used to support Cloudflare Bot Management. |
sp_landing | 1 day | The sp_landing is set by Spotify to implement audio content from Spotify on the website and also registers information on user interaction related to the audio content. |
sp_t | 1 year | The sp_t cookie is set by Spotify to implement audio content from Spotify on the website and also registers information on user interaction related to the audio content. |
Cookie | Duration | Description |
---|---|---|
_hjAbsoluteSessionInProgress | 1 year | No description |
_hjAbsoluteSessionInProgress | 1 year | No description |
_hjAbsoluteSessionInProgress | 1 year | No description |
_hjAbsoluteSessionInProgress | 1 year | No description |
_hjFirstSeen | 29 minutes | No description |
_hjFirstSeen | 29 minutes | No description |
_hjFirstSeen | 29 minutes | No description |
_hjFirstSeen | 1 year | No description |
_hjid | 11 months 29 days 23 hours 59 minutes | This cookie is set by Hotjar. This cookie is set when the customer first lands on a page with the Hotjar script. It is used to persist the random user ID, unique to that site on the browser. This ensures that behavior in subsequent visits to the same site will be attributed to the same user ID. |
_hjid | 11 months 29 days 23 hours 59 minutes | This cookie is set by Hotjar. This cookie is set when the customer first lands on a page with the Hotjar script. It is used to persist the random user ID, unique to that site on the browser. This ensures that behavior in subsequent visits to the same site will be attributed to the same user ID. |
_hjid | 1 year | This cookie is set by Hotjar. This cookie is set when the customer first lands on a page with the Hotjar script. It is used to persist the random user ID, unique to that site on the browser. This ensures that behavior in subsequent visits to the same site will be attributed to the same user ID. |
_hjid | 1 year | This cookie is set by Hotjar. This cookie is set when the customer first lands on a page with the Hotjar script. It is used to persist the random user ID, unique to that site on the browser. This ensures that behavior in subsequent visits to the same site will be attributed to the same user ID. |
_hjIncludedInPageviewSample | 1 year | No description |
_hjIncludedInPageviewSample | 1 year | No description |
_hjIncludedInPageviewSample | 1 year | No description |
_hjIncludedInPageviewSample | 1 year | No description |
_hjSession_1776154 | session | No description |
_hjSessionUser_1776154 | session | No description |
_hjTLDTest | 1 year | No description |
_hjTLDTest | 1 year | No description |
_hjTLDTest | session | No description |
_hjTLDTest | session | No description |
_lfa_test_cookie_stored | past | No description |
Cookie | Duration | Description |
---|---|---|
loglevel | never | No description available. |
prism_90878714 | 1 month | No description |
redirectFacebook | 2 minutes | No description |
YSC | session | YSC cookie is set by Youtube and is used to track the views of embedded videos on Youtube pages. |
yt-remote-connected-devices | never | YouTube sets this cookie to store the video preferences of the user using embedded YouTube video. |
yt-remote-device-id | never | YouTube sets this cookie to store the video preferences of the user using embedded YouTube video. |
yt.innertube::nextId | never | This cookie, set by YouTube, registers a unique ID to store data on what videos from YouTube the user has seen. |
yt.innertube::requests | never | This cookie, set by YouTube, registers a unique ID to store data on what videos from YouTube the user has seen. |