Quick Start

Welcome to ThreatDefence! This quick start will help you get up and running with the platform in just a few steps.

Our recommended path for new customers is:

  1. Install the Endpoint Agent to capture endpoint telemetry and enable advanced detection.

  2. Connect Microsoft 365 to monitor Entra ID, email, and cloud activities.

  3. Access the Analyst Console to view alerts, dashboards, and reports.

  4. Expand your visibility with SIEM integrations, Monitoring Sensors, and Attack Surface Management.

  5. Engage with our Customer Success Team to activate 24/7 SOC, reporting and regular review meetings.


Quick Start Navigator

Step
Description
Next Steps

Install Endpoint Agent

Deploy the lightweight agent on Windows, Mac, or Linux endpoints. Provides telemetry, forensic artifacts and containment actions.

Connect Microsoft 365

Integrate Entra ID and Microsoft 365 services to gain visibility into accounts, email, Defender and Purview logs.

Access Analyst Console

Log into the Analyst Console to review detections, alerts and dashboards.

Access Customer Portal

Log into the Customer Console to manage integrations and get reports.

SIEM Integrations

Connect additional log sources such as EDR, firewalls, SaaS, and cloud platforms.

NDR Sensors

Deploy physical or virtual sensors for advanced visibility and detections.

Attack Surface Management

Monitor your external perimeter, look-alike domains, dark web leaks, and vulnerabilities.


Last updated