Sign In Start Free Trial
Account

Add to playlist

Create a Playlist

Modal Close icon
You need to login to use this feature.
  • Book Overview & Buying Microsoft Defender for Cloud Cookbook
  • Table Of Contents Toc
  • Feedback & Rating feedback
Microsoft Defender for Cloud Cookbook

Microsoft Defender for Cloud Cookbook

By : Sasha Kranjac
5 (4)
close
close
Microsoft Defender for Cloud Cookbook

Microsoft Defender for Cloud Cookbook

5 (4)
By: Sasha Kranjac

Overview of this book

Microsoft Defender for Cloud is a multi-cloud and hybrid cloud security posture management solution that enables security administrators to build cyber defense for their Azure and non-Azure resources by providing both recommendations and security protection capabilities. This book will start with a foundational overview of Microsoft Defender for Cloud and its core capabilities. Then, the reader is taken on a journey from enabling the service, selecting the correct tier, and configuring the data collection, to working on remediation. Next, we will continue with hands-on guidance on how to implement several security features of Microsoft Defender for Cloud, finishing with monitoring and maintenance-related topics, gaining visibility in advanced threat protection in distributed infrastructure and preventing security failures through automation. By the end of this book, you will know how to get a view of your security posture and where to optimize security protection in your environment as well as the ins and outs of Microsoft Defender for Cloud.
Table of Contents (12 chapters)
close
close

Organizing security alerts and changing a security alert status

Security alerts are generated continuously based on advanced analytics and threat intelligence, and when a security alert is raised, you should respond to it and resolve it as soon as possible. In this recipe, you will learn how to respond to a security alert and change its alert status.

Getting ready

Open a web browser and navigate to https://portal.azure.com.

How to do it

To respond to a security alert and change its alert status, take the following steps:

  1. In the Azure portal, open Microsoft Defender for Cloud.
  2. On the left menu, select Security alerts.
  3. Select a security alert you want to investigate and remediate. A details pane opens on the right. At the top of the details pane, click on the Status drop-down menu, showing the alert status as Active:

Figure 5.13 – Security alert status

  1. If a security alert is resolved, you should change its status...

Unlock full access

Continue reading for free

A Packt free trial gives you instant online access to our library of over 7000 practical eBooks and videos, constantly updated with the latest in tech
bookmark search playlist download font-size

Change the font size

margin-width

Change margin width

day-mode

Change background colour

Close icon Search
Country selected

Close icon Your notes and bookmarks

Delete Bookmark

Modal Close icon
Are you sure you want to delete it?
Cancel
Yes, Delete

Confirmation

Modal Close icon
claim successful

Buy this book with your credits?

Modal Close icon
Are you sure you want to buy this book with one of your credits?
Close
YES, BUY