Assess security posture of your datacenter in under one hour using OMS

Slides:



Advertisements
Similar presentations
IT Operations Management
Advertisements

IT Operations Management
2/20/2018 7:04 PM BRK1038 Meet Azure Information Protection customers and learn about their success stories Jeffrey Kalfut Strategy & Architecture Manager,
BRK1017 Taking your hybrid management and security strategy to the cloud with Operations Management Suite Jeremy Winter and Srini Chandrasekar.
Hybrid Management and Security
Microsoft Ignite /30/2018 9:28 PM BRK3174
Microsoft /21/2018 3:52 AM BRK3042 Migrate and Disaster Recover Azure workloads using Operations Management Suite Rochak Mittal Principal PM, Site.
Deliver business insights with Microsoft Dynamics AX and Power BI
Microsoft Virtual Academy
Get control over your datacenter with security monitoring using OMS
Examine information management in Cortana Intelligence
Develop, debug and deploy containerized applications with Docker
Microsoft Operations Management Suite Insight and Analytics
Microsoft /2/2018 3:42 PM BRK3129 Query Big Data using the Expanded T-SQL footprint with PolyBase in SQL Server 2016 Casey Karst Program Manager.
BRK3288-Discover data-driven apps that learn and adapt
Configure and Manage Your Hybrid Cloud Environment at Scale
Conduct a successful pilot deployment of Microsoft Intune
6/10/2018 5:07 PM THR2218 Deploying Windows Defender AV and more with Intune and Configuration Manager Amitai Senior Program Manager,
Review the Nutanix Cloud Platform System Standard solution
Microsoft Virtual Academy
Microsoft Ignite /11/2018 1:18 AM BRK4017
Use Azure Security Center to prevent, detect, and respond to threats
6/19/2018 2:57 AM THR3092 Monitor and investigate actions on your user and data with alerts, insights and reports Binyan Chen Program Manager II, Office.
Microsoft /23/2018 1:11 AM BRK3180 Migrate CRM OnPremise organizations to CRM Online cloud using Dynamics Lifecycle Services (LCS) Aditya Varma Ganapathy.
Web development productivity with Visual Studio
Innovate with Microsoft BI in the enterprise
Microsoft Ignite /17/ :54 PM BRK2092
Virtual Machine Diagnostics in Microsoft Azure
Microsoft Ignite /22/2018 3:27 PM BRK2121
Secure Remote Access to on-premises Web Apps using Azure AD
BRK2264 Move 13,000+ global Dynamics CRM users from on-premises to Online at Caterpillar Inc. Todd Byrne & John Finney 1 Business Unit Name Here.
IT Operations Management
Microsoft Ignite /31/ :08 AM
Master Modern PaaS for the Enterprise with Azure App Service
Understanding Windows Analytics Update Compliance
BRK1018 Discover how Manulife and Rackspace manage their hybrid environments today Satya Vel Principal Program Manager Operations Management Suite + System.
Get Started with Common Data Model (CDM) and PowerApps
Design Seamless Upgrades to SQL Server 2016 with Query Store
IT Operations Management
Microsoft /8/2018 4:45 PM BRK3062 BRK3062- Build smarter and scalable applications using Microsoft Azure Database Services Moshe Gutman CEO, GeoSafe.
The utility belt for managing security and compliance in Office 365
BRK2198 Protect your data With a modern backup, archive & disaster recovery solution Avinash Belur, Sr. Product Marketing Manager Rajesh Goli, Sr. Product.
Add intelligence to Dynamics AX with Cortana Intelligence suite
Use server-based personal desktops in Windows Server 2016
Microsoft /18/2018 3:30 AM BRK3163 Manage and troubleshoot infrastructure and application issues using Operations Management Suite Richard Rundle.
Microsoft Virtual Academy
9/18/ :06 AM BRK2212 Gain visibility into Network performance and availability with Network monitoring solutions in Azure Vijay Tinnanur Abhishek.
Accelerate Your Transition from Traditional IT to the Cloud
Explore web development with Microsoft ASP.NET Core 1.0
Migrate to CRM Online - Tips and Tricks
Determine your role in a managed service
Dive into Predictive Maintenance using Cortana Intelligence Suite
Microsoft Ignite /22/2018 3:58 PM BRK2254
Microsoft Virtual Academy
Ed oms team OMS: Log Analytics Ed oms team.
Automating Windows 10 and software deployments from the Cloud
Microsoft Virtual Academy
Task recorder in Dynamics AX
Learn how to use and customize the Dynamics AX interactive help system
Microsoft Virtual Academy
Microsoft Virtual Academy
Microsoft Virtual Academy
2/24/2019 7:49 PM BRK2198 Four new Azure management experiences to run your business critical applications Dushyant Gill | Jan Kalis.
Keep up with Office 365 evolution in the real world
Understand your Azure cloud assets dependencies with BMC Discovery
Ask the Experts: Windows 10 deployment and servicing
Microsoft Virtual Academy
Microsoft Virtual Academy
Microsoft Virtual Academy
Microsoft Virtual Academy
Presentation transcript:

Assess security posture of your datacenter in under one hour using OMS Microsoft Ignite 2016 12/2/2018 6:07 PM BRK3328 Assess security posture of your datacenter in under one hour using OMS Meir Mendelovich Tigran Shahbazian Program Manager Program Manager @MMendelovich @tigran25 © 2016 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

The Challenge Moving from zero to security hero in less than an hour

Quick overview of OMS Security 12/2/2018 6:07 PM ? Quick overview of OMS Security © 2014 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

OMS Security – Securing the hybrid datacenter 12/2/2018 6:07 PM OMS Security – Securing the hybrid datacenter Private AWS Collect, correlate, and act on any security data Analyze and visualize your security posture Gain insights into notable issues and threats © 2014 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Bring all of your security data to OMS Any machine on any environment Just install the OMS agent and you are ready to go Linux and Windows Collect data from your security solutions Use CEF (Common Event Format) supported by most security solutions Additional solution for Cisco ASA Collected over Syslog to OMS Linux agent Private AWS

Out-of-the-box security posture assessments Update View the update and patching status on all your servers Antimalware Discover antimalware software deployed and your current protection state Security Configuration Baseline Assess best practice security configuration rules on all of your computers Identity Snapshot of the identities that access your servers

Integrated Threat Intelligence OMS Security comes with Threat Intelligence feed Based on the leading vendors in this market and Microsoft own intelligence No need to purchase anything Log records are cross-correlated and enriched Relevant log records are matched to find traffic involving malicious IP addresses No need for complex integrations Search and visualize threats on maps Records are geo-tagged Full threat report with on the adversary

Advanced Detection Analytics Built-in advanced detection analytics Hundreds of detection rules and patterns based on common security events Behavioral and machine learning tools calibrated for low false-positive Always current, constantly updated Our security research team is constantly analyzing new threats and update the analytics Integrated with Microsoft ATA Microsoft Advanced Threat Analytics (ATA) detections are normalized and presented side-by-side

Starting from zero 12/2/2018 6:07 PM © 2014 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Meet Contoso99 Has servers on-prem, in Azure and in AWS 12/2/2018 6:07 PM Meet Contoso99 Has servers on-prem, in Azure and in AWS C99 SharePoint Farm + an Ubuntu machine Two servers on-prem Has both Windows Server and Linux But doesn’t have real experts in both  © 2014 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

12/2/2018 6:07 PM How much time would it take to deploy security monitoring for Contoso99? Azure Sql-1 Sql-0 Sql-w Sps-web- 0 Sps-web- 1 sps-app- 0 sps-app- 1 Ad-pdc Ad-bdc C99- Ubuntu On-Prem LinuxSrv WinServ © 2014 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Setup steps Add new “Security & Compliance” solution Attach it to a new OMS workspace Once deployment is done, open the workspace Under Data Sources / Virtual Machines, add your VMs Under General / Quick Start, get the agent download, workspace ID and workspace keys

12/2/2018 6:07 PM Under the hood © 2014 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

OMS Security Architecture Tech Ready 15 12/2/2018 OMS Security Architecture IP to Geo mapping Azure Data export Threat Intelligence feeds Logs On-prem / private cloud Any public cloud Web Normalization & Enrichment Queries Logs System Center Operations Manager (SCOM) Mobile Detections Logs API Advanced Detection Alerts via Mail, WebHooks, automation Security MPs Direct Windows or Linux agents SCOM agents Syslog/ CEF Security products © 2012 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

12/2/2018 6:07 PM You are now a hero! © 2014 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Call to action: Try OMS on your servers/desktops Go to http://oms Call to action: Try OMS on your servers/desktops Go to http://oms.microsoft.com and sign-in It takes minutes to get up and running It is free for small deployments

Operations Management Suite Sessions at #MSIgnite Microsoft 2016 12/2/2018 6:07 PM Operations Management Suite Sessions at #MSIgnite Day Time Code Room Title Focus Topics Monday 2:15-3:30 BRK1017 C202-204 Take your management and security strategy to the cloud with Operations Management Suite (OMS) Top-line breakout Tuesday 9:00-9:45 BRK2198 B206 Protect your data with a modern backup, archive and disaster recovery solution Protection & Recovery 10:45-12:00 BRK3063 C302 Back up born-in-the-cloud and hybrid applications with Operations Management Suite and Azure Backup 12:30-1:45 BRK2001 B405-407 Get control over your datacenter with security monitoring using Operations Management Suite Security & Compliance 11:30-12:15 BRK1018 C114 Discover how Manulife and Rackspace manage their hybrid environments today Overview 4:00-5:15 BRK3163 B401-402 Manage and troubleshoot infrastructure and application issues using Operations Management Suite Insights & Analytics Wednesday 9:00-10:15 BRK2178 Thomas Murphy Ballroom 1 Dive deep into Operations Management Suite for applications and infrastructure BRK3328 C112 Assess security posture of your datacenter in under one hour using Operations Management Suite BRK2181 Protect every app: transform disaster recovery with Operations Management Suite BRK2180 B213-B214 Monitor Linux in any cloud with Operations Management Suite 4:40-5:15 BRK1000 Discover how Accenture and Time Warner manage hybrid environments today Thursday BRK3042 Migrate and disaster recover Azure workloads using Operations Management Suite 11:30am - 12:15pm BRK2293 Mitigate datacenter security threats with guided investigation using Operations Management Suite BRK2179 C113 Manage your Azure Resources at scale with Operations Management Suite BRK3164 Sidney Marcus Auditorium Automate tasks and gain efficiency for your hybrid environment Automation & Control Friday BRK2095 Uncover system and service issues of any app with Operations Management Suite 10:45-12:00PM BRK2091 A411-412 Manage updates across on-premises and clouds for Windows Server & Linux BRK2092 Thomas Murphy Ballroom 2&3 Explore configuration and change management in Operations Management Suite © 2016 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

System Center sessions at #MSIgnite Microsoft 2016 12/2/2018 6:07 PM System Center sessions at #MSIgnite Day Time Code Room Title Focus Topics Monday 2:15-3:30 BRK2204 B312-314 Meet Windows Server 2016 and System Center 2016! Top-line breakout Tuesday 9:00-10:15 BRK2159 Georgia Ballroom Take advantage of new capabilities in System Center 2016 4:00-5:15 BRK3166 Thomas Murphy Ballroom 2&3 Manage your software-defined datacenter using System Center 2016 Virtual Machine Manager System Center Thursday BRK3165 Monitor your changing datacenter using Microsoft System Center 2016 Operations Manager Wednesday 12:30pm - 1:45pm BRK 2121 B213-214 Monitor and diagnose web apps & services with Application Insights & SCOM Management theater sessions at #MSIgnite Day Time Code Room Title Focus Topics Monday 1:00-1:20 THR3028 Build solutions with Operations Management Suite extensions and integration OMS Tuesday 10:20-10:40 THR3023 Microsoft Theater 1 Witness cloud attacks illustrated: insights from Operations Management Suite and Security Security & Compliance Wednesday THR3029 Learn lessons and notes from the field - Operations Management Suite Site Recovery and Backup Protection & Recovery 2:10-2:30 THR3024 Evolve your automation strategy with Operations Management Suite Automation & Control Thursday 12:05-12:25 THR3022 Evolve your MP experience in System Center Operations Manager 2016 System Center © 2016 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Free IT Pro resources To advance your career in cloud technology Microsoft Ignite 2016 12/2/2018 6:07 PM Free IT Pro resources To advance your career in cloud technology Plan your career path Microsoft IT Pro Career Center www.microsoft.com/itprocareercenter Cloud role mapping Expert advice on skills needed Self-paced curriculum by cloud role $300 Azure credits and extended trials Pluralsight 3 month subscription (10 courses) Phone support incident Weekly short videos and insights from Microsoft’s leaders and engineers Connect with community of peers and Microsoft experts Get started with Azure Microsoft IT Pro Cloud Essentials www.microsoft.com/itprocloudessentials Demos and how-to videos Microsoft Mechanics www.microsoft.com/mechanics Connect with peers and experts Microsoft Tech Community https://techcommunity.microsoft.com © 2016 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Please evaluate this session 12/2/2018 6:07 PM Please evaluate this session Your feedback is important to us! From your PC or Tablet visit MyIgnite at http://myignite.microsoft.com From your phone download and use the Ignite Mobile App by scanning the QR code above or visiting https://aka.ms/ignite.mobileapp © 2014 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

12/2/2018 6:07 PM © 2014 Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.