Last updated on March 20, 2023
Microsoft Defender for Cloud |
Microsoft Sentinel |
|
Description |
Unified infrastructure security management system |
Intelligent security analytics and threat intelligence service. |
Category |
Cloud Security Posture Management (CSPM) / Cloud Workload Protection Platform (CWPP) |
Security Information Event Management (SIEM) / Security Orchestration Automated Response (SOAR) |
Function |
Provides security alerts, scores, vulnerability assessment, recommendations, and security posture management. |
Provides alert detection, threat visibility, proactive hunting, and threat response. |
Features |
|
|
Provides Security Recommendation? | Yes | No |
Threat Response Management | Manual | Automated |
Integration | You may use the Microsoft Defender for Cloud to provide Microsoft Sentinel with more information to identify, investigate, and remediate threats. |
Microsoft Defender for Cloud vs Microsoft Sentinel Resources:
https://docs.microsoft.com/en-us/azure/defender-for-cloud/defender-for-cloud-introduction
https://docs.microsoft.com/en-us/azure/sentinel/overview
https://docs.microsoft.com/en-us/azure/defender-for-cloud/supported-machines-endpoint-solutions-clouds?tabs=features-windows#supported-features-for-virtual-machines-and-servers-