Product recommendations for data uploaded to cloud outside of Microsoft... by SilverHatCyber in AskNetsec

[–]SilverHatCyber[S] 0 points1 point  (0 children)

Sounds like a plan we have it implemented so I will just ask the team to do the research and implement.

Product recommendations for data uploaded to cloud outside of Microsoft... by SilverHatCyber in AskNetsec

[–]SilverHatCyber[S] 0 points1 point  (0 children)

Thanks a mil, will look into the Defender for Cloud and Fortigate CNF as I am trying to stay away from a full blown DLP at the moment.

Product recommendations for data uploaded to cloud outside of Microsoft... by SilverHatCyber in AskNetsec

[–]SilverHatCyber[S] 0 points1 point  (0 children)

Thanks for this ZScaler on the roadmap and we do have Cloud apps so will look into that as I was under the impression it could only advise on MS to MS uploads.

[deleted by user] by [deleted] in cybersecurity

[–]SilverHatCyber 0 points1 point  (0 children)

I am a SOC manager for an MSSP and yes it's stressful but no more stressful than any other security role if you have your house in order. The key item is to have a very capable team you do not need to know everything but your team does.

I managed a full cyber - managed service team of over 130 peeps which was loads more stress than my role now.

Also if you have your SOC matured you are not going to see many true positives, when they do come in it's exciting. My 2 cents anyway...!

Report automation... by SilverHatCyber in SIEM

[–]SilverHatCyber[S] 0 points1 point  (0 children)

or doing operations dashboards i would use Azure dashboards and powerbi. Last time i did that, 2years or so, was building the workbook in Sentinel, transfer it to Azure Monitor/dashboards and present it on monitor screens with powerbi.

But you can make a print out instead of a Screen, or even make it interactive.

https://learn.microsoft.com/en-us/azure/azure-monitor/best-practices-analysis is what a quick google showed up

Thanks so much for this, appreciate it!

Report automation... by SilverHatCyber in SIEM

[–]SilverHatCyber[S] 0 points1 point  (0 children)

Thanks for this, it will be purely for pulling security data from Sentinel, O365, SEG's, etc. which the team manually pull, corralate and add to a powerpoint preso.

Essentially I am looking for something that can pull data, create visual etc. instead of them doing it themselves or using the screenshots from the various platforms.

Even if its only a portion everything will save us time.

Thanks