Microsoft Sentinel Accelerator: 5-Wk Implementation


FPT's Accelerators are strategic and hands-on services that incorporate onboarding and installation of Microsoft Sentinel, delivered by FPT technical experts specializing in Microsoft and Azure.

Utilizing the FPT's pre-built playbooks and analytic rules repositories, FPT will conduct a comprehensive analysis of client's environment and deliver actionable security insights. The service comprises a thorough risk assessment, guidance on how to leverage Microsoft security products, deployment and configuration best practice to fulfill client needs. With Microsoft certified experts who specialize in Microsoft 365 Defender, Microsoft Defender for Endpoint, and Microsoft Sentinel, FPT will help customer to design and implement a quick-win approach to minimize onboarding time and maximize client investment in Microsoft Sentinel.

Key Services Delivered:

  • Default Connector Configuration: FPT will onboard customer log sources into Microsoft Sentinel for both on-premises and Cloud devices
  • Deployment of Analytic Rules from the FPT's repositories
  • Deployment of a set of 5 playbooks for Microsoft Sentinel in customer’s Microsoft Sentinel subscription
  • Customized Content (Workbooks/Analytic Rules/Connectors/Playbooks) Development: FPT will develop up-to 3 (three) customized contents tailored with client requirements during the engagement.

Supported Connectors:

  • Azure Activity
  • Azure Active Directory Identity Protection
  • Office 365 (Sharepoint, Exchange and Teams)
  • Microsoft Defender for Cloud
  • Microsoft Defender for Identity
  • Microsoft Defender for Endpoint
  • Microsoft Defender for Cloud Apps
  • Microsoft Defender for Office 365
  • Windows Security Events
  • Linux Syslog