Malware Protection Essentials
Microsoft Sentinel, Microsoft Corporation
Malware Protection Essentials
Microsoft Sentinel, Microsoft Corporation
Malware Protection Essentials
Microsoft Sentinel, Microsoft Corporation
Malware Protection Essentials
Note: Please refer to the following before installing the solution:
• Review the solution Release Notes
• There may be known issues pertaining to this Solution, please refer to them before installing.
Malware Protection Essentials is a domain solution and does not include any data connectors. The content in this solution requires one of the product solutions below , as well as any other connector or data source normalized to the ASIM.
Prerequisite :-
Install one or more of the listed solutions, or develop your custom ASIM parsers to unlock the value provided by this solution.
- Amazon Web Services
- Azure Firewall
- Azure Network Security Groups
- Check Point
- Cisco ASA
- Cisco Meraki Security Events
- Corelight
- Fortinet FortiGate
- Microsoft Defender for IoT
- Microsoft Defender for Cloud
- Microsoft Sysmon For Linux
- Windows Firewall
- Palo Alto PANOS
- Vectra AI Stream
- WatchGuard Firebox
- Zscaler Internet Access
Underlying Microsoft Technologies used:
This solution takes a dependency on the following technologies, and some of these dependencies either may be in Preview state or might result in additional ingestion or operational costs:
- Product solutions as described above
- Logic app for data summarization
Recommendation :-
It is highly recommended to use the Summarize data logic app playbook provided with this solution as it will significantly improve the performance of the Workbook, Analytic rules & Hunting queries.
Workbooks: 1, Analytic Rules: 6, Hunting Queries: 6, Watchlists: 1
Learn more about Microsoft Sentinel | Learn more about Solutions