Describe how Microsoft Sentinel provides integrated threat management
Microsoft Sentinel is a scalable, cloud-native SIEM and SOAR solution. Microsoft Sentinel provides the full view across the company to recognize increasingly sophisticated attacks, increasing volumes of alerts, and long resolution time frames, making your company more efficient in responding to and eliminating threats.
Microsoft Sentinel is made up of the following workflow:
- Collect data at cloud scale across all users, devices, applications, and infrastructure in Azure, Microsoft 365, on-premises, and in multiple clouds.
- Detect previously undetected threats and minimize false positives using Microsoft's analytics and global threat intelligence.
- Investigate threats with machine learning and artificial intelligence, and hunt for suspicious activities at a global scale, utilizing the intelligence gathered through the cybersecurity work at Microsoft.
- Respond to incidents rapidly with...