Skip to main content Frontier Transformation AI for business Use cases Consumer goods Digital sovereignty Education Overview Power and utilities Oil and gas Mining Overview Banking Capital markets Insurance Overview Defense and intelligence Transportation and urban infrastructure Public health and social services Public safety and justice Public finance Overview Providers Payors Life sciences Health solutions Overview Industrial transformation Media and entertainment Overview Automotive Travel and transportation Retail Telecommunications Microsoft 365 Copilot AI agents at work Agent 365 Security for AI Copilot Studio Microsoft Foundry Azure AI apps and agents Microsoft Marketplace Copilot+ PCs Microsoft Copilot Download the Copilot app Microsoft responsible AI Principles and approach Tools and practices Advancing sustainability Securing AI Data protection and privacy AI 101 AI learning hub Industry blog Microsoft Cloud blog Support for business Industry documentation
·
1 min read

The security tools jigsaw puzzle

An illustration depicting miscellaneous 'data', next to a picture of Bit the Raccoon.

At Microsoft Ignite in Nov 2021, some of Azure’s security products were renamed to show they protect more than just Azure: 

  • Azure Security Center is now Microsoft Defender for Cloud 
  • Azure Defender is also now Microsoft Defender for Cloud 
  • Azure Defender for IoT is now Microsoft Defender for IoT
  • Azure Sentinel is now Microsoft Sentinel 
  • Microsoft Cloud App Security is now Microsoft Defender for Cloud Apps 

Let’s take those product names and build a jigsaw puzzle of security tools! Microsoft Defender for Cloud gives you a base level of security recommendations, alerts, and security posture assessments, for Azure workloads and workloads Azure can see using Azure Arc (like Servers running Windows and Linux on-premises or in other clouds).  

You can then add Microsoft Defender for “X”, for a greater level of detail on specific workloads like Servers, Storage, SQL etc, which all feeds into Microsoft Defender for Cloud. Oh, and Microsoft Defender for Endpoint – that’s licensed as part of Microsoft Defender for Servers. 

Next, those signals can surface into and be investigated with Microsoft Sentinel – the security information and event management (SIEM) and security orchestration automated response (SOAR) tool – which can also take signals from third-party systems that are compliant with a standard security logging format. For example, add your on-premises Enterprise-grade firewall, and now you’re building the bigger picture of activities and vulnerabilities in your environment.  

And finally, Microsoft Defender for IoT helps manage the security of IoT devices, and Microsoft Defender for Cloud Apps discovers “shadow IT” use of Software-as-a-Service applications, including storage of sensitive information and suspicious behaviour like large uploads. Both also integrated into Microsoft Sentinel. 

Check out our blog for more details and hopefully this jigsaw picture will help you choose the right security tool for the right job! 

Learn more

English (United Kingdom)
Your Privacy Choices Opt-Out Icon Your Privacy Choices
Consumer Health Privacy Contact Microsoft Privacy Manage cookies Terms of use Trademarks About our ads EU Compliance DoCs Regulatory reporting