- Microsoft promises to reduce data retention costs to less than 10%
- Sentinel Data Lake will break down silos and empower safety teams
- A layer of AI will improve detection and response time to overcome opponents
Microsoft has launched Sentinel Data Lake, while he seeks to break down silos, reduce costs and improve the detection of large -scale threats with a lake of updated safety data and optimized by AI.
Now in the public overview, Microsoft says that users will no longer need to choose between keeping critical data and staying in the budget.
He combines SIEM, XDR and Threat Intelligence in a single platform, bringing together Microsoft data and third-party sources with more than 350 native connectors, promising to be a “new architecture”, not “only a new product”.
Microsoft Sentinel Data Lake
In order to democratize information on threats and improve coverage, Microsoft Defender Threat Intelligence capacities will now be available in the defender XDR and Sentinel without adding to the cost.
This is at the top of the injection of artificial intelligence, which promises “faster detection, a more intelligent response and the ability to even exceed the most sophisticated opponents”.
Microsoft claims that the update allows security teams to discover the behavior of the attacker without worrying about the storage limits, which can considerably improve detection by analyzing the specific trends for the company.
Sentinel Data Lake “allows security teams to proactively detect latent attacks, detect emerging threats with models led by AI, to rebuild attack periods in forensic details and to retroactively discover compromise indicators that could otherwise pass incompetent,” said Microsoft.
Among the advantages of Microsoft’s improved sentry, there is the possibility for companies to keep raw data for compliance and digital criminalics and a lower TCO with faster return on investment.