Skip to content
  • Blog
  • Events
  • Help
  • Careers
  • Contact
New Signature
  • About
      • Company

        Cognizant Microsoft Business Group is dedicated to changing the way businesses innovate, transform and run based on a unique cloud operating model. You will now be redirected to our new microsite to learn more.

        View Company

      • Awards

        As a company, we are regularly recognized within the IT industry as well as the communities we serve.

        View All Awards
      • News

        Read the most up-to-date corporate announcements, Microsoft technology updates, innovative business solutions and learn more about how the Cognizant Microsoft Business Group can take your business even farther.

        View News

      • Partners

        New Signature works with a number of outstanding technology companies to deliver the best experiences to our customers.

        View Partners
      • Leadership

        Cognizant Microsoft Business Group’s executive team is comprised of innovative leaders with proven experience and deep industry expertise. You will now be redirected to our new microsite to learn more.

        View Leadership

      • Industries

        Our solutions are tailored to empower organizations across a wide range
        of industries.

        View Industry Experience
    Close
  • Solutions
      • Intelligent Enterprise
        Solutions

        Going Digital
        Unleash cloud capability, deliver change and compete at speed with a Microsoft digital operating model, enabling you to work more efficiently as you transform your IT environment. Learn More

      • Featured Solution

        Secure Cloud
        In a world of constant threat, ensuring that your underlying cloud platform is protected is the first step on your organization’s journey towards a secure, compliant operating environment. Learn More
      • Intelligent Workplace
        Solutions

      • Secure Workplace

        Work Anywhere

        Endpoint Health

        Identity Health

        Teamwork Support



        VIEW WORKPLACE SOLUTIONS
      • Intelligent Cloud
        Solutions

      • App Factory

        Azure Accelerator

        Azure Launchpad

        Azure Launchpad for DevOps

        Application Health

        Platform Health

        VIEW ClOUD SOLUTIONS
    Close
  • Services
      • Begin your journey towards becoming a digital business with GO, our unique end-to-end framework based on the Microsoft Cloud Adoption Framework.

        GO DIGITAL OPERATING MODEL
      • Intelligent Enterprise

      • Consulting

        We go beyond just technology to help your organization understand how digital can help you uniquely differentiate and better serve your employees and customers.

        VIEW ENTERPRISE SERVICES
      • Intelligent Workplace

        • Identity

          Identity is your new first-line-of-defense. It’s vital to your users and clients that your identity platform is properly configured and secured.

          Endpoint

          Whether your devices are on-premises or remote, personal or business-owned, we can ensure they are properly managed and protected.

          Teamwork

          Today’s workforce is collaborating than ever before.  We can empower your current teams with tomorrow’s progressive technologies.

          VIEW WORKPLACE SERVICES
        • Intelligent Cloud

          • Platform

            The cloud is no longer some future-state. It’s the here and now. Adopting a cloud-first platform is one of the best ways to maintain a future-proofed competitive advantage.

            Applications

            We build cloud-native apps and modernize legacy systems with the power of Azure to give your organization a competitive edge.

            Data

            We can help your organization create secure, scalable data platforms to deliver simpler and more sophisticated insights to your business.

            VIEW CLOUD SERVICES
        Close
      • Client Stories
          • Case Studies

            Browse a comprehensive list of companies who have created successful partnerships and experienced transformative solutions with New Signature.

            View All Case Studies

          • Featured Case Study TalkTalk Modern Workplace

            New Signature worked with TalkTalk to define a new Modern Workplace solution based on Microsoft 365, which kept the user firmly at the center of the transformation.
            View Case Study

          • Testimonials

            We love transforming our customers businesses, take a look at what they have to say about New Signature.

            View Testimonials

          • Featured Testimonial Davis Construction

            With New Signature’s help, Davis was able to take a progressive step forward by migrating their private branch exchange (PBX) phone system to a Voice of Internet Protocol (VoIP) system.
            View Testimonial

        Close
      • Explore
          • Guides & Ebooks

            Dive deeper into education with your team by leveraging our expert-developed guides and eBooks.

            View All Guides & Ebooks

          • Infographics

            Rich with statistics and information, our infographics are great tools for quick but insightful learning.

            View All Infographics
          • Podcast: Office Explorers

            Join Kat and Rob monthly as they chat with New Signature experts and explore the world of O365.

            Listen to Podcasts

          • Videos

            Visit our videos stream to access recorded webinars, service information and to learn more about us.

            WATCH ALL VIDEOS
          • Flyers

            Searching for information about our services? Our flyers are a great takeaway for all those details.

            VIEW ALL FLYERS

          • Featured Stream

            Learn more about the tooling and expertise required to unlock productivity and mobilize your teams.

            MODERN WORKPLACE
        Close
        Close
      Blog

      Microsoft Defender: Security’s Next Evolution

      New Signature / Blog / Microsoft Defender: Security’s Next Evolution
      October 8, 2020October 7, 2020| Reed Wiedower
      Microsoft Defender

      It’s been a long time coming. As I’ve noted before, Microsoft is in the midst of a multi-year campaign to reduce the number of sub-brands associated with the organization so that customers, partners and even Microsoft itself have an easier way to understand their products.

      In the past, it appeared as if “Azure” was sprinkled around so liberally that it was tough to understand where products actually lived or what their function was. Consider “Azure Advanced Threat Protection”, which protects on-premises Active Directory domain controllers. Contrast that with “Azure AD“, which was a cloud identity source sold in a large part through Microsoft 365 licenses. Of course the worst example was trying to explain the difference between “Azure Information Protection” and “Azure AD Identity Protection”. The former was part of Microsoft 365 used to encrypt documents; the latter, a service also sold as part of Microsoft 365, but designed to detect potentially anomalous behavior akin to Azure ATP – but for cloud identities.

      Whew–what a cloudy mess.

      Microsoft made a big change last month to clean up many of these challenges by reducing sub-brands and focusing on business objectives in one key domain area: security. Instead of a myriad of different ways to describe endpoint solutions or URL rewriting in emails, or even data collected in real-time from cloud servers, Microsoft settled on one name that they already owned: Microsoft Defender. Moving forward, although there will continue to be different product capabilities, they will all flow up into a single name.

      Within this top level, there are two types of Defender: Microsoft 365 Defender and Azure Defender. This division is fairly easy to explain to CISOs, app developers and those on the IaaS and PaaS side of things. End user-facing security items are all under Microsoft 365 Defender, while core infrastructure protection of servers, IoT devices and databases all live under Azure Defender.

      Microsoft Defender

      In a single sweep, Microsoft has now made it much easier to understand how they are protecting organizations’ environments. Companies that just came together may find themselves almost entirely using Microsoft 365 Defender, while large enterprises with lots of servers to secure may straddle both worlds.

      Within these top two categories there are still some sub-categories including:

      • Microsoft Defender for Endpoint (nee Microsoft Defender ATP)
      • Microsoft Defender for Office 365 (nee Office 365 ATP)
      • Microsoft Defender for Identity (nee Azure ATP)
      • Azure Defender for Servers (nee Azure Security Center)
      • Azure Defender for IoT (formerly Azure Security Center for IoT)
      • Azure Defender for SQL (previously ATP for SQL)

      As with any change in the security landscape, Microsoft is also broadly positioning Microsoft 365 Defender as an XDR solution, and Azure Defender as a SIEM replacement. I’ve found that although many CISOs keep abreast of the latest nomenclature in the industry, it is a challenge to find other C-level executives aware of current conventions, or even their overall worth. For that reason, I think it’s easier to divide all of the security systems into three tiers:

      • Tier 1: Control plane systems (e.g. Microsoft Endpoint Manager)
      • Tier 2: Monitoring, data-labelling and basic remediation (e.g. Microsoft Information Protection; Microsoft Defender for Office 365)
      • Tier 3: Behavior-based remediation and labelling (e.g. Microsoft Defender for Identity)

      What’s shocking is how many organizations fail to implement a proper control plane system that simply updates every device on a regular cadence and can modify a security position based on those criteria. Although behavior-based remediation steals the limelight, most compromises occur simply because devices don’t have updates. Moving to Tier 2 systems: again, although most organizations have tools such as Microsoft Information Protection (MIP) available to them, they haven’t gone through the basic exercise of identifying which types of documents are sensitive and manually choosing to encrypt them. Until your organization does this, every day that goes by, sensitive documents are being emailed to personal email addresses or copied to thumb drives. Don’t let the perfect be the enemy of the good; at least start protecting your truly sensitive documents with a goal of getting a full labelling effort underway. Better to have some documents protected than none.

      Finally, Tier 3 systems are key to taking advantage of the cloud. In the past, many security shops could claim (despite rarely meeting their stated goals) 100% compliance with updates, and a secure network inside of their firewalls. These days, most rational admins recognize that almost every system has bad actors on it. The Zero Trust model helps useres start with the correct assumption: that any system, network or device needs to prove it is safe to move data onto it, and instead of looking for specific types of files they should be looking for bad types of behavior.

      An easy analogy would be the FBI’s “10 Most Wanted” list. Looking for well-defined individuals doesn’t work in a digital threat landscape. Malware and virii simply modify themselves too quickly for that. Instead, think about a street with a series of cars parked on it. If a window is broken out of a vehicle, that could indicate criminal activity or simply someone playing baseball nearby. But if two, three or more vehicles all have their windows broken out, something is definitely wrong. It could still be an act of god, a hailstorm’s effect mirror a group of vandals. But miscreants or ice: the effect is the same and having tools in place to rapidly identify and recover are key to preventing broader damage.

      Cognizant’s Microsoft Business Group helps customers with these challenges every day, and doing so before damage is the best way to ensure a safe existence. Reach out to us today and we can walk you through how Microsoft Defender can protect your entire environment.

      About the Author

      Reed M. Wiedower is the Chief Technology Officer and global Microsoft Alliance executive at New Signature- Cognizant’s Microsoft Business Group (MBG). He is a visionary who drives New Signature’s technological research and translates these efforts into solutions that deliver measurable return for customers. Reed champions Microsoft cloud, along with learning and partner strategies. He personally runs the Microsoft Partner Seller program at Cognizant MBG, consisting of top consultants who help deliver great customer experiences to customers in the form of Customer Immersion Experiences, whiteboarding sessions and planning services and is an award-winning Partner Seller himself.

      Prior to working at MBG, Reed worked at the United States Department of Agriculture and JIL Information Systems. Reed graduated from Williams College with a double major in Political Science and English. He is a Microsoft Certified IT Professional on multiple platforms including Dynamics 365, Microsoft 365 and Azure, and is a Microsoft Certified Trainer as well as a CompTIA Certified Technical Trainer.

      Categories
      Technical Reviews
      Contact New Signature

      Blog Posts

      • Agile Delivery for Large Scale Data Ingestion using Azure Data Explorer
      • Implementing Cloud Adoption Framework Across Vida Homeloan’s Organization
      • Nudging Better Behavior Before Viva
      • Cognizant Microsoft Business Group Achieves Microsoft Advanced Specialization for Windows Virtual Desktop

      Managed Services

      Lorem ipsum dolor sit amet, consectetur adipiscing elit. Praesent fermentum, enim ac dignissim aliquet

      VIEW ALL MANAGED SERVICES

      Professional Services

      Lorem ipsum dolor sit amet, consectetur adipiscing elit. Praesent fermentum, enim ac dignissim aliquet

      VIEW ALL PROFESSIONAL SERVICES

      New Signature

      About

      • Company
      • Awards
      • News
      • Leadership
      • Partners
      • Industries

      Solutions

      • Intelligent Enterprise Solutions
      • Intelligent Workplace Solutions
      • Intelligent Cloud Solutions

      Services

      • GO
      • Intelligent Enterprise
      • Intelligent Workplace
      • Intelligent Cloud

      Client Stories

      • Client Stories
      • Testimonials

      Explore

      • Guides & Ebooks
      • Podcasts
      • Flyers
      • Infographics
      • Videos
      Copyright © 2023 New Signature
      • Blog
      • Events
      • Careers
      • Help
      • Anti Slavery
      • Privacy Policy
      • Contact
      • About
        • Company
        • Awards
        • News
        • Leadership
        • Partners
        • Industries
      • Services
        • GO
        • Intelligent Enterprise
        • Intelligent Workplace
        • Intelligent Cloud
      • Client Stories
        • Case Studies
        • Testimonials
      • Technologies
      • Explore
        • Guides & Ebooks
        • Infographics
        • Podcast: Office Explorers
        • Videos
        • Flyers
      • Blog
      • Events
      • Careers
      • Contact
      • Search
      Cookie Settings
      New Signature uses "Required Cookies" to run our website, "Functional Cookies" used by third parties to personalise marketing, including social media features.

      Change your preferences by clicking the “Cookie Settings” link at the bottom of every page. Learn more about cookies in our Cookie Policy and our Privacy Policy. By clicking the “Accept Cookies” button below, you consent to our use of cookies.

      Please note that “Required Cookies” will be set regardless of your consent.
      Cookie SettingsAccept Cookies
      Privacy & Cookies Policy

      Privacy Overview

      This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may have an effect on your browsing experience.
      Targeting

      Targeting Cookies are used to capture user information in order for New Signature to deliver better user experiences.

      Performance

      Performance Cookies provide Content Delivery Network assets that deliver faster site content delivery capabilities.

      Required

      These cookies are required mainly in order to deliver Multilanguage site capabilities.

      Functional

      Functional Cookies allow us to provided advanced media capabilities including videos, surveys and other multimedia capabilities.

      Disabling Functional cookies will block the playing of videos and other multimedia site components.

      Save & Accept