Cloud-enabled SIEM & SOAR solutions for infrastructure, application, and data security operations with unified identity to stay ahead of new threats across cloud and on-premise settings.
Agenda
Phase 1: Introduction and kick-off meeting
Understanding the current infrastructure
Assess the current security landscape of the organization
Identifying the organization’s security goals
Phase 2: Architecture Discussion
Choose all the workloads in scope for implementation
Presentation of architecture and solution
Select standard rules and policies from a checklist for configuration
Discuss custom policy requirements in detail
Phase 3: Implementation of Azure Sentinel
Implementation of the security information event management (SIEM) and security orchestration automated response (SOAR) solution with Azure Sentinel.
Implementation of additional security services like Azure Security Center, WAF, MFA, Blueprint, etc.