{"id":130426,"date":"2023-06-13T09:00:00","date_gmt":"2023-06-13T16:00:00","guid":{"rendered":"https:\/\/www.microsoft.com\/en-us\/security\/blog\/?p=130426"},"modified":"2024-06-26T08:38:55","modified_gmt":"2024-06-26T15:38:55","slug":"how-microsoft-and-sonrai-integrate-to-eliminate-attack-paths","status":"publish","type":"post","link":"https:\/\/www.microsoft.com\/en-us\/security\/blog\/2023\/06\/13\/how-microsoft-and-sonrai-integrate-to-eliminate-attack-paths\/","title":{"rendered":"How Microsoft and Sonrai integrate to eliminate attack paths"},"content":{"rendered":"\n

This blog post is part of the Microsoft Intelligent Security Association <\/em>guest blog series<\/em><\/a>. <\/em>Learn more about MISA<\/em><\/a>.<\/em> <\/p>\n\n\n\n

Cloud development challenges conventional thinking about risk. A \u201cperimeter\u201d was always the abstraction that security teams could start from\u2014defining their perimeter and exposing the cracks in firewalls and network access. With more and more infrastructure represented as ephemeral code, protecting your perimeter is no longer a matter of software vulnerabilities and network checks. It\u2019s a complex web of interconnected risks that can exacerbate network gaps or workload vulnerabilities.<\/p>\n\n\n\n

When it comes to remediating risks, context is always king, and siloed pillars of cloud security\u2014identity, data, platform, and workloads\u2014kill context. Protecting a broad Microsoft Azure footprint means having a deep understanding of how these risks can combine to create unintended access to your company\u2019s sensitive data, and then prioritizing threats based on potential business impact. This means understanding identity, workload, platform configuration, and data security through a single pane of glass providing visibility across the entire digital estate.<\/p>\n\n\n\n

Sonrai integrates with Microsoft Sentinel<\/a> and Microsoft Defender for Cloud<\/a> to uncover and remediate sophisticated threats in a timely manner.<\/p>\n\n\n\n

Microsoft released Defender for Cloud to protect across hybrid and multicloud environments. Sonrai works with Defender for Cloud\u2019s infrastructure and operational controls for powerful event logging to ingest all information and bring context into one place. Sonrai\u2019s patented analytics evaluate how identity and data risks compound with platform and workload risks to create access to sensitive data within Azure.<\/p>\n\n\n\n

To help Azure customers understand the true blast radius of every vulnerability, Sonrai integrates with Microsoft Sentinel to monitor threats across vectors and automate responses by leveraging security orchestration, automation, and response (SOAR) playbooks, and Defender for Cloud to provide visibility across the entire digital estate by identifying possible attack paths and remediating vulnerabilities.<\/p>\n\n\n\n

Backed by these insights, an organization can successfully operationalize a risk remediation practice. They are additionally able to enable DevOps and security teams to fully harness the digital transformation and time-to-delivery benefits that Azure can power, without worrying about sacrificing speed for security.<\/p>\n\n\n

\n\t
\n\t\t
\n\n\t\t\t\n\t\t\t
\n\t\t\t\t
\n\t\t\t\t\t

Microsoft Defender for Cloud<\/h2>\n\n\t\t\t\t\t
\n\t\t\t\t\t\t

Secure multicloud and hybrid environments.<\/p>\n\t\t\t\t\t<\/div>\n\n\t\t\t\t\t\t\t\t\t\t\t