Session
Defender XDR Unleashed: Automate Detection and Response the Simple Way
Learn how Microsoft Defender XDR’s custom detection rules unlock powerful yet simple automations, turning threat detection into immediate action. Join us to see hands-on examples of rapid response, simplified workflows, and smarter security.
Automation in cybersecurity is essential, but complexity often prevents effective implementation. In this technical deep-dive, we'll demonstrate how you can leverage custom detection rules in Microsoft Defender XDR to quickly turn detections into effective automated responses—without complexity or heavy customization.
Through 3-5 practical, real-world examples, we'll showcase scenarios such as automatic endpoint isolation upon malware detection, proactive blocking of suspicious user activities, and immediate alert-driven remediation tasks. You'll see step-by-step demonstrations, actionable code snippets, and clear guidelines, making it easy to apply these automations directly in your environment.
By attending, you'll learn:
• How to create powerful but straightforward custom detection rules.
• Strategies for automating immediate security responses with minimal effort.
• Best practices for ensuring reliable, low-maintenance automation.
• Does and don’ts – Real live experience.
This session is ideal for security analysts, engineers, and architects who want actionable insights, simplified security workflows, and immediate improvements to their threat-response capabilities using Microsoft Defender XDR.
Join us and turn your threat detection into rapid, reliable, and simple automated actions.

Morten Thomsen
Cloud Security Architect | Trusted Security Advisor | SECONI
Viborg, Denmark
Links
Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.
Jump to top