Quick Start

Welcome to ThreatDefence! This quick start will help you get up and running with the platform in just a few steps.

Our recommended path for new customers is:

  1. Install the Endpoint Agent to capture endpoint telemetry;

  2. Connect your email (365, Google);

  3. Deploy Network Sensor(NDR), if applicable;

  4. Access the Analyst Console to view alerts, dashboards, and reports;

  5. Expand your visibility with SIEM integrations, Monitoring Sensors and Attack Surface Management;

  6. Attend monthly or quaterly security posture review meetings.


Quick Start Navigator

Step
Description
Next Steps

Install Endpoint Agent

Deploy the lightweight agent on Windows, Mac, or Linux endpoints. Provides telemetry, forensic artifacts and containment actions.

Connect Email

Integrate Microsoft 365 or other email services to gain visibility into accounts, email, Defender and Purview logs.

Access Analyst Console

Log into the Analyst Console to review detections, alerts and dashboards.

Access Customer Portal

Log into the Customer Console to manage integrations and get reports.

SIEM Integrations

Connect additional log sources such as EDR, firewalls, SaaS, and cloud platforms.

NDR Sensors

Deploy physical or virtual sensors for advanced visibility and detections.

Attack Surface Management

Monitor your external perimeter, look-alike domains, dark web leaks, and vulnerabilities.


Last updated