Splunk Tech Talks
Deep-dives for technical practitioners.

Maximize the Value from Microsoft Defender with Splunk

melissap
Splunk Employee
Splunk Employee

Microsoft Defender Header.png

 

Join Splunk and Sens Consulting for this Security Edition Tech Talk

Who should attend:  Security Analysts, SOC Managers

Microsoft Defender Threat Vulnerabilities data contains valuable information about software vulnerabilities in your environment. Defender also has device tagging capabilities which will enhance your asset list in Splunk Enterprise Security. So let's get this data into Splunk and elevate your security overview.

 

(view in My Videos)


Tune in for Maximize the value from Microsoft Defender with Splunk to see how to prepare the data in Microsoft Defender and collect and normalize it into the Vulnerability data model. Afterwards you will end up with a dashboard on a System Manager level - revealing the risks both in a specific system and across the organization. All of this is packed into a technical add-on which will be available for you.

Speakers:
Mikael Bjerkeland, Security Sales Engineer, Splunk
Andreas Søvik - Senior Consultant, Sens Consulting
Thomas Hillesøy - Senior Consultant, Sens Consulting

Splunkbase App: Microsoft 365 Defender Threat Vulnerability Add-on for Splunk

 

Contributors
Get Updates on the Splunk Community!

Supercharging Windows Security Detection Performance: Introducing Hybrid Field ...

Windows event logs—from Security auditing and Sysmon to PowerShell script blocks—form the operational backbone ...

Ditch the Manual Grind: Building AI Agents with Splunk

Ditch the Manual Grind: Building AI Agents with Splunk Let’s be real: your team’s time is being eaten alive. ...

Cisco Data Fabric from Architecture to Investigation, Better SOC Visibility, and More ...

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...