セキュリティ運用– tag –
-
Microsoft Sentinelとは?Microsoft Defender連携の変更点と管理者の確認ポイント
Microsoft Sentinelは、クラウドネイティブなSIEMであり、Microsoft Defenderポータル上で利用できる統合セキュリティプラットフォームです。2026年5月14日に更新された... -
Microsoft Sentinel in the Microsoft Defender portalとは?2027年移行までに管理者が確認すべきポイント
結論から言うと、Microsoft Sentinel in the Microsoft Defender portalは、Microsoft Sentinelの運用画面をAzure portal中心からMicrosoft Defender portal中心へ移す... -
Microsoft SentinelをDefenderポータルへ移行する前に確認すべき変更点と対応ポイント
Microsoft SentinelをAzureポータルで運用している組織は、Microsoft Defenderポータルへの移行を「画面の変更」ではなく、SOC運用・自動化・権限・API連携の見直しとし... -
Microsoft DefenderのUEBA設定とは?Enable entity behavior analytics to detect advanced threatsの変更点と確認事項
Microsoft Defenderで「Enable entity behavior analytics to detect advanced threats」を確認している管理者がまず押さえるべき点は、これはMicrosoft Defender単体の... -
Microsoft Defender for Identityの新機能まとめ:2026年5月更新の影響範囲と管理者の対応ポイント
Microsoft Defender for Identity の「What's new」でまず押さえるべき結論は、2026年5月の更新が 検知範囲の拡大 と センサー運用の大規模化 に直結する内容だという点... -
Microsoft Sentinelの新着情報を解説:Microsoft Defender管理者が確認すべき変更点
Microsoft DefenderポータルでMicrosoft Sentinelを運用している管理者がまず押さえるべき点は、今回の「What's new in Microsoft Sentinel」が単なる新機能紹介ではな... -
Microsoft DefenderにMicrosoft Sentinelを接続する変更点と管理者の移行チェックリスト
Microsoft DefenderでMicrosoft Sentinelを使う運用は、単なる画面移動ではありません。結論から言うと、既存のMicrosoft SentinelワークスペースをMicrosoft Defender... -
Microsoft DefenderのUser reported settingsとは?管理者が確認すべき影響範囲と設定ポイント
Microsoft Defender for Office 365の「User reported settings」は、ユーザーがOutlookから報告したフィッシング、迷惑メール、正常なメールをどこへ送るかを決める重... -
Microsoft PurviewのIRM更新:一時ファイルノイズ低減の影響と管理者の対応ポイント
Microsoft PurviewのInsider Risk Management(IRM)では、Windowsでファイルを開いたときに発生する一時ファイル関連のEndpointアクティビティを、IRMの調査・スコアリ...
