YASH - Attack Defense Framework

YASH Technologies

YASH Attack Defense Framework strategy that goes beyond traditional passive defenses by proactively engaging with threats to detect, deceive, and disrupt adversaries.

The implementation of YASH Attack Defense Framework based on Microsoft Sentinel will provide a robust strategy to protect the organization from the adversaries. It helps to design the dynamic defences, detection and deception for the adversaries built primarily on Microsoft Azure.

For example, is the MITRE ATT&CK framework, which maps defensive techniques to known adversary behaviours, helping defenders to choose right counter measures.

Activities:

  • Review and Planning: Understand client needs (SIEM (Microsoft Sentinel) rules, business goals) and define scope (systems, organizational areas)
  • Security Posture Review: Evaluating current detection, deception, and response capabilities.
  • Threat Modelling: Simulate attacker paths using MITRE ATT&CK, NIST, GDPR and identify choke points.
  • Refining the existing rules where required with any additional data if required.
  • Integrate with additional threat intelligence sources.
  • Create and configure new alerts based on threat models.
  • Continuously monitor and update incident response protocols.

 Benefits:

  • Reveals blind spots in detection and response.
  • Prioritizes high-impact controls for implementation.
  • Provides evidence-based justification for investment.

 Deliverables:

  • KQL-Based Detection Ruleset
  • Triaging Templates
  • Enhanced Standard Operating Procedures
  • SIEM (Microsoft Sentinel) Configuration Package
https://store-images.s-microsoft.com/image/apps.37511.db5722ac-d89a-44e2-ba3d-91a693ac42cc.04b1d00c-6788-49aa-a077-c8cd373b52b8.54791a51-b472-447d-8234-46118c209815
https://store-images.s-microsoft.com/image/apps.37511.db5722ac-d89a-44e2-ba3d-91a693ac42cc.04b1d00c-6788-49aa-a077-c8cd373b52b8.54791a51-b472-447d-8234-46118c209815
https://store-images.s-microsoft.com/image/apps.19233.db5722ac-d89a-44e2-ba3d-91a693ac42cc.0f83aa79-e463-4380-9a14-b46720964af5.b59b7c78-fc24-4ca3-850d-0dc0958c4a7f
https://store-images.s-microsoft.com/image/apps.31741.db5722ac-d89a-44e2-ba3d-91a693ac42cc.0f83aa79-e463-4380-9a14-b46720964af5.e297c29b-19bc-45ba-bef8-5edaaa9dc06b