What this book covers
Chapter 1, A Brief History of Microsoft Defender for Endpoint, describes the backstory of what is known today as MDE, including the histories of various products and how they have evolved over the years.
Chapter 2, Exploring Next-Generation Protection, introduces the next-generation protection category of capabilities in MDE. It contains details of the reasoning behind the features and their applicability, as well as giving an overview of common misconceptions and other caveats.
Chapter 3, Introduction to Attack Surface Reduction, provides foundational information about the attack surface reduction category of capabilities in MDE. It contains details of the reasoning behind the features and their applicability, as well as giving an overview of common misconceptions and other caveats.
Chapter 4, Understanding Endpoint Detection and Response, details the endpoint detection and response category of capabilities in MDE. It contains details on components, a walkthrough of data and response features available to an analyst, as well as recommendations for each.
Chapter 5, Planning and Preparing for Deployment, instructs you, using the understanding of MDE’s features and their applicability established thus far, how to prepare and plan a rollout within an organization.
Chapter 6, Considerations for Deployment and Configuration, concerns the various operating specifics, the deployment tools and methods available, and how to execute a deployment plan with a phased approach, adjusting appropriately and preparing for a transition to operations.
Chapter 7, Managing and Maintaining the Security Posture, covers the various daily processes and tasks to support the continuous operation of the product in an environment, and the improvement of the security posture.
Chapter 8, Establishing Security Operations, delivers a high-level overview of the day-to-day activities of the SecOps team. It speaks to common approaches and highlights some opportunities to streamline and further optimize practices by leveraging MDE’s advanced capabilities.
Chapter 9, Troubleshooting Common Issues, focuses on the techniques and tools used for troubleshooting and answers common questions you may have on how to tackle possible problems that can arise during operations.
Chapter 10, Reference Guide, Tips, and Tricks, serves as a reference and contains a practical overview of certain commonly used commands, with tips and tricks that can save time and improve user experience.