Näytä suppeat kuvailutiedot

MICROSOFT SENTINEL DEPLOYMENT AND EVALUATION

Torri, Luke Mikael (2022)

dc.contributor.authorTorri, Luke Mikael
dc.date.accessioned2022-12-16T08:28:35Z
dc.date.available2022-12-16T08:28:35Z
dc.date.issued2022-
dc.identifier.urihttp://www.theseus.fi/handle/10024/787576
dc.description.abstractThis thesis was a research and implementation of Microsoft Sentinel a cloud-based security information event management tool. An opportunity for the thesis work came from a company called Marskidata where Microsoft products were heavily used, but Sentinel was still unknown. My goals were to demonstrate how to implement Microsoft Sentinel to an existing company environment, and to evaluate how useful Sentinel is, and in what situations. All the work was done in Marskidata Azure cloud environment. The first implementation of Sentinel was done in my own demo 365 Office environment, and after learning and studying Sentinel there, a fully functional version was configured to a working Marskidata cloud environment. Documentation was done as I learned new skills and concepts on the way. Microsoft Sentinel is relatively easy to deploy to an existing Azure cloud environment. All the surface level and default tools are simple to understand and use, but the actual hunting and incident response work begins to get complicated for an unexperienced user. Microsoft Sentinel turned out to be an excellent tool for responding to new to threats. Sentinel is not for every network or organization; it is hard to use, and it is relatively costly. I wanted to get an idea of where Sentinel suits the best, in what size and type of organization. Generally bigger the environment, the more value Sentinel brings with some exceptions.-
dc.language.isoeng-
dc.rightsfi=All rights reserved. This publication is copyrighted. You may download, display and print it for Your own personal use. Commercial use is prohibited.|sv=All rights reserved. This publication is copyrighted. You may download, display and print it for Your own personal use. Commercial use is prohibited.|en=All rights reserved. This publication is copyrighted. You may download, display and print it for Your own personal use. Commercial use is prohibited.|-
dc.titleMICROSOFT SENTINEL DEPLOYMENT AND EVALUATION-
dc.type.ontasotfi=AMK-opinnäytetyö|sv=YH-examensarbete|en=Bachelor's thesis|-
dc.identifier.urnURN:NBN:fi:amk-2022121630403-
dc.subject.specializationInformation security-
dc.subject.degreeprogramfi=Tieto- ja viestintätekniikka|sv=Informations- och kommunikationsteknik|en=Information and Communications Technology|-
dc.subject.ysocloud services-
dc.subject.ysodata security-
dc.subject.ysocyber security-
dc.relation.contractorMarskidata Oy-
dc.subject.disciplineDegree Programme in Information Technology-
annif.suggestions.linkshttp://www.yso.fi/onto/yso/p5479|http://www.yso.fi/onto/yso/p24167|http://www.yso.fi/onto/yso/p12936|http://www.yso.fi/onto/yso/p3547|http://www.yso.fi/onto/yso/p2837|http://www.yso.fi/onto/yso/p26189|http://www.yso.fi/onto/yso/p26592|http://www.yso.fi/onto/yso/p38995|http://www.yso.fi/onto/yso/p5475|http://www.yso.fi/onto/yso/p22009en


Tiedostot

Thumbnail

Viite kuuluu kokoelmiin:

Näytä suppeat kuvailutiedot