ã¢ãã€ã«ç«¯æ«ãã¯ã©ãŠã ãµãŒãã¹ãšãã£ã IT ç°å¢ã®å€æ§åãšãšãã«ãæ å ±ã»ãã¥ãªãã£ã®ãªã¹ã¯ç®¡çæ¥åã¯å¢å€§ããŠããŸããå·§åŠåãããµã€ããŒæ»æã«å¯ŸããŠã¯ãCSIRTïŒ Computer Security Incident Response Team ïŒã SOCïŒ Security Operation Center ïŒãªã©ã«ãããçµç¹çãªå¯Ÿå¿ãæ¬ ãããŸããã
ããããæ¥æ¬ã«ãããã»ãã¥ãªãã£äººæã®äžè¶³ã¯æ·±å»ã§ããIPAïŒæ å ±åŠçæšé²æ©æ§ïŒã®ã IT人æçœæž2019 ãã«ããã°ãIT 人æã«å¯Ÿããéäžè¶³æã«ã€ããŠãå€§å¹ ã«äžè¶³ããŠãããã 30% 以äžããããäžè¶³ããŠãããã 55% 以äžãšããåççµæãåºãŠããŸããã»ãã¥ãªã㣠ãªã¹ã¯ç®¡çã®å¹çåã¯ã極ããŠé倧ãªããŒããšãããã§ãããã
ããããç¶æ³ã®äžãèšåºæ€æ»ã®ãããã©ã³ããŒã§ããã¿ããã°ã«ãŒã㯠IT ã€ã³ãã©ã Microsoft 365 E5 ã«éçŽãããããããã«ãMicrosoft Azure Sentinel ãå°å ¥ããããšã«ãã£ãŠããã©ã€ããŒã SOC ãçæéã§å®çŸãããŠããŸããæ€æ»æ©åšãæ€æ»è©Šè¬ã®è£œé ãããæ€æ»ã»ã³ã¿ãŒããã³ç é¢å ã§ã®èšåºæ€æ»ããããŠãªãã£ã¹ ã¯ãŒã¯ã«è³ã倿§ãªä»äºç°å¢ã®ãã¹ãŠããæé©ãªã»ãã¥ãªã㣠ããŒã 人å¡ã«ãã£ãŠä¿è·ãããŠããã®ã§ãã
ãã©ãã©ã ã£ãäºæ¥äŒç€Ÿã®ã»ãã¥ãªãã£ã¬ãã«ããæé«ãã«çµ±äžãã
ã¿ããã°ã«ãŒãã®æŽå²ã¯ãå¯å£«èåšè£œè¬ãèšç«ããã 1950 幎ãŸã§é¡ããŸããå瀟ã®èšåºæ€æ»éšéãåé¢ããæ±äº¬ã¹ãã·ã¢ã«ã¬ãã¡ã¬ã³ã¹ã©ãã©ããªãŒãèšç«ãããã®ã 1970 幎ãå¯å£«ã¬ããªããšã¹ã¢ãŒã«ãšã«ãšåå·å€æŽããã䞡瀟ã¯ããšãã«æ±èšŒäžéšã«äžå ŽãæãããŸãããã㊠2005 幎䞡瀟ã¯çµå¶çµ±åããã¿ããã°ã«ãŒããèªçããŸããã
ãšã¹ã¢ãŒã«ãšã«ãå šåœã§äºæ¥ãå±éãããèšåºæ€æ»ããšã¯ãæ£è ã®ç¶æ ã蚺æããããã«è¡æ¶²ãå°¿ãDNA ãªã©ãæ€æ»ããããšã§ãããšã¹ã¢ãŒã«ãšã«ã¯ç¹ã«éºäŒåãæè²äœæ€æ»ãã¯ãããšããç¹æ®æ€æ»ã«åŒ·ã¿ãæã¡ãåœå 倧ç é¢ã® 8 å²ãšååŒå®çžŸããããŸãã
å¯å£«ã¬ããªã¯ãèšåºæ€æ»ã«äœ¿çšããæ©åšãæ€æ»è©Šè¬ã®éçºã»è£œé ã»è²©å£²ãè¡ã£ãŠããã補åãæäŸããŠããåœã¯ 100 ã«åœä»¥äžã«ã®ãŒããŸããå¯å£«ã¬ããªã®è£œåã¯é«ãå質ãè©äŸ¡ãããææçãã¬ã³ã®æ©æçºèŠã«è²¢ç®ããå瀟ã¯ãŸãã«èšåºæ€æ»æ¥çã®ãããã©ã³ããŒã§ãã
-

2018 幎 5 æãæ±äº¬éœæž¯åºã«éèšãããSRL Advanced Lab. Azabu ã¯ã365 æ¥ 24 æé皌åã®æ€æ»äœå¶ãèªã
æ¥æ¿ãªå°åé«éœ¢åã瀟äŒä¿éè²»ã®æå¶ãICT ãæŽ»çšããå»çãµãŒãã¹ã®æäŸãªã©ãä¿éºå»çãåãå·»ãç°å¢ã¯å€§ããå€åããŠããããã®åãã¯ä»åŸããã«å éãããšäºæž¬ãããŸãããã®äžã§ãã¿ããã°ã«ãŒã㯠2017 幎ã«ã第äºã®åµæ¥ããæ²ããã°ã«ãŒãå瀟ãæã€ããªããªãªæè¡ãç¥èŠãèåããã°ã«ãŒãçµå¶ãæšæŠããã²ãšã€ã®çµç¹ãšããŠã®æææ±ºå®ã¹ããŒããé«ããå瀟ãåãå·»ãç°å¢ã«å¯Ÿå¿ããŠããŸããå瀟ã°ã«ãŒãã¯çŸåšãAI æè¡ã䜿ã£ãèšåºæ€æ»ã®èªååãããã«ã¹ ã±ã¢åéãªã©ã®æ°äºæ¥éæã«åãæ³šãã§ããŸãã
ã¿ããã°ã«ãŒãã 2017 幎ã«çå®ããäžæçµå¶èšç»ã Transform! 2020 ãã§ã¯ãã 2020 幎以éã®é£èºçãã€æç¶çãªæé·ã®ããã®åºç€ãæŽåãåå°ãäœããããšãç®çã«æ²ããŠããŸãã
ãæé·ã®ããã®åºç€ãã«ã¯åœç¶ãIT ã·ã¹ãã ãå«ãŸããŠããŸãã2017 幎 5 æã«ã¯ IT çµç¹ã®çµ±åãšã·ã§ã¢ãŒãåãè¡ããã°ã«ãŒãå šäœãžã® IT ãµãŒãã¹ããã¿ããããŒã«ãã£ã³ã°ã¹ã® IT éšéããäžåŸã«æäŸãããããšãšãªã£ãã®ã§ãã䞻軞㮠IT ã€ã³ãã©ãšããŠéžã°ããã®ã¯ãMicrosoft 365 ã§ããã
ã¿ããããŒã«ãã£ã³ã°ã¹ IT ã€ã³ãã©ãµãŒãã¹éš éšé· èææš éç· æ°ã¯ãåœæã®æ€èšãããæ¯ãè¿ããŸãã

ã¿ããããŒã«ãã£ã³ã°ã¹æ ªåŒäŒç€Ÿ ITã€ã³ãã©ãµãŒãã¹éš éšé· èææš éç· æ°
ãæ¥åé¢ã»ã»ãã¥ãªãã£é¢ã»éçšé¢ãªã©ããããèŠç¹ããèŠãŠããä»åŸã¯ IT ã€ã³ãã©ã Microsoft 365 ã«éçŽããŠããããšããã¹ãã§ãããšå€æããã®ã§ãããäºæ¥äŒç€Ÿãäºæ¥ã«å°å¿µã§ããç°å¢ãçšæãããããšã管çéšéã®ããã·ã§ã³ã§ãããšãCEO ãçé ã«ã¯ãªã¢ãªã¡ãã»ãŒãžãæã¡åºãããããã«ãã·ã¹ãã é¢ã§ã®çµ±åãã¹ã ãŒãºã«é²ããããšãã§ããŸãããïŒèææš æ°ïŒã
IT çµ±åã®ã¡ãªãããäºæ¥äŒç€Ÿã«èª¬æããããã§ãçã£å ã«æããããã®ã¯ãã»ãã¥ãªãã£ã¬ãã«ã®åäžãã§ããããããŸã§ã¯äºæ¥äŒç€Ÿããšãæ åœè ããšã«ãã©ãã©ã ã£ã察çããã¬ããžããMicrosoft 365 ã«ãã£ãŠã¢ã¯ã»ã¹æš©ãããªã·ãŒãçµ±å管çããããããã²ãšã€ã®äŒç€Ÿã®ããã«ãæãé«ãã»ãã¥ãªã㣠ã¬ãã«ã§ã®çµ±äžãå¯èœãšãªãã®ã§ãã
Azure Sentinel ã«ãã£ãŠ SOC ãžã®éã®ãã 1 幎以äžççž®
åœåå°å ¥ããã Microsoft 365 E3 ãã¯ããã£ã¹ã¯ã®æå·åãªã©ãšã³ã ãã€ã³ã ã»ãã¥ãªãã£ãšããŠæå¹ã ã£ããšèææš æ°ããã ããã¿ããã°ã«ãŒãã®ç®æãã»ãã¥ãªãã£åã«ãããŠã¯ããã匷åºãªã»ãã¥ãªãã£ãæ±ããããŸããã
ãã¡ãŒã«ã§äžæ£ãª URL ãéãããŠããããã¯ã©ã€ã¢ã³ããäžå¯©ãªæåãããããšãã£ãããã¹ãŠã®è åšã«å¯Ÿããä¿è·ãå¿ é ã§ãããïŒèææš æ°ïŒã
çæ³çãªã»ãã¥ãªãã£ç°å¢ãæ§ç¯ããããã«ãå°å ¥æéã»éçšå·¥æ°ãèæ ®ããããã§ã2019 幎 5 æããå°å ¥ãããã®ããã»ãã¥ãªãã£æ©èœã匷åãããã Microsoft 365 E5 ãã§ããããã« 2019 幎 9 æããã¯ã Microsoft Azure Sentinel ãã®å©çšãã¹ã¿ãŒãããŠããŸãã
Microsoft Azure Sentinel ã¯ããã€ã¯ããœãããæäŸããã¯ã©ãŠã ãã€ãã£ã SIEM ã§ãããããã¯ãŒã¯å ã«ååšããããŸããŸãªãããã¯ãŒã¯æ©åšãã»ãã¥ãªãã£æ©åšã®ããŒã¿ãåéã»ç®¡çãããããŠèªåçãªçžé¢åæã«ãã£ãŠäžæ£ãæ€ç¥ããããšãã§ããŸãã
ããšãã°ããŠãŒã¶ãŒãéå€ããŠããã«ãããããããã¯ã©ã€ã¢ã³ããããµãŒããŒãžã®ã¢ã¯ã»ã¹ãè¡ãããŠãããšããã°ãããã¯ç°åžžäºæ ã§ããããããããšããã°ã®çžé¢åæã«ãã£ãŠèªåçã«å¯ç¥ããã®ã SIEM ã®ç¹åŸŽã§ãããµãŒã ããŒãã£è£œåãŸã§å«ãããã¹ãŠã®ãã°ãçµ±åç£èŠãããã»ãã¥ãªã㣠ãœãªã¥ãŒã·ã§ã³ã®æäžäœæ©èœã Microsoft Azure Sentinel ãªã®ã§ãã

ã¿ããããŒã«ãã£ã³ã°ã¹æ ªåŒäŒç€Ÿ ITã€ã³ãã©ãµãŒãã¹éš ã€ã³ãã©çµ±åãµãŒãã¹èª²é· æšäž åçŽãšãã¯ã«ã æ°
Microsoft Azure Sentinel ã®ç»å Žã¯ãã¿ããã°ã«ãŒãã®ã»ãã¥ãªãã£äœå¶ã幎åäœã§é£èºããããšãã¿ããããŒã«ãã£ã³ã°ã¹ ITã€ã³ãã©ãµãŒãã¹éš ã€ã³ãã©çµ±åãµãŒãã¹èª²é· æšäž åçŽãšãã¯ã«ã æ°ã¯è©±ããŸãã
ãããšããš 24 æéäœå¶ã§ãµã€ããŒæ»æãç£èŠãã SOC ãç¯ãããã«ã3ã«å¹Žã®ããŒã ããããçšæããŠããŸããã1 幎ç®ã«åæ©åšãããã°ãåéã»çµ±åã§ããäœå¶ãçšæãã2 幎ç®ã« SIEM ãå°å ¥ã3 幎ç®ã« SOC åãšããæµãã§æ§æ³ããŠããã®ã§ãããšããããMicrosoft Azure Sentinel ã®ç»å Žãšãã€ã¯ããœããããã®æåããµããŒãã«ãã£ãŠãã¹ã¿ãŒããããããå幎㧠SIEM ãå°å ¥ããããšãã§ããŸããã2 å¹Žã®æéãå幎ã«ççž®ã§ããããã§ããïŒæšäž æ°ïŒã
éåžžãSIEM ããŒãããå°å ¥ããããšããã°ãåéãããã°ã®åæãæ€ç¥ã«ãŒã«ã®äœæã«ãã»ãã¥ãªã㣠ãšã³ãžãã¢ã®å€å€§ãªå·¥æ°ãããããŸããããããã¯ã©ãŠã ãã€ãã£ã SIEM ã§ãã Microsoft Azure Sentinel ã䜿ãã°ããã€ã¯ããœãããã«ãŒãã«ããŒã¹ã§ååŸããŠããæ å ±ãšã»ãã¥ãªãã£ã€ã³ããªãžã§ã³ã¹ãããšã«ãé«åºŠãª AI ãè åšã®æ€åºãéããã«è¡ã£ãŠãããŸãããã°ã®ååŸãããã€ã¯ããœãã補åã§ããã°ãã¡ããæ°ã¯ãªãã¯ã§å®äºããFirewall ã Proxy ãVPN çã«å¯ŸããŠããAPI ãè±å¯ã«çšæãããŠããããç°¡åã«é£æºããããšãå¯èœã§ãã
äžå 管çã«ããã»ãã¥ãªãã£æ¥åãå€§å¹ ã«å¹çå

ã¿ããããŒã«ãã£ã³ã°ã¹æ ªåŒäŒç€Ÿ å·è¡åœ¹ ç·åãITæ åœ æšæ åæ æ°
倿§ãªäºæ¥ãå±éããã¿ããã°ã«ãŒãã§ã¯ãèªç€Ÿæœèšã§æ€æ»ãè¡ãæ€æ»ã¹ã¿ããã ãã§ãªãã顧客ã§ããç é¢ã«åžžé§ããæ€æ»ã¹ã¿ãããæ€æ»è¬ã®éçºã»è£œé ã»è²©å£²ãæå ç«¯ã®æ€æ»æè¡ç ç©¶è·ãŸã§ãåãå Žæã»åãæ¹ãããŸããŸã§ããåœå ã«ã¯ 120 æ ç¹ã®ã©ããå¶æ¥æããããã°ã«ãŒãå šäœã§ 13,000 人ãåããŠããŸãã
ãããã¯ãã©ãã«ã§ãæŒæŽ©ãããªã¹ã¯ããããšããããšã§ãããããšãã¿ããããŒã«ãã£ã³ã°ã¹ å·è¡åœ¹ ç·åãITæ åœã®æšæ åæ æ°ã¯ããèšããªãããä»åã®ãããžã§ã¯ãã®æçŸ©ã«ã€ããŠè©±ããŸãã
ãããããå Žæã«ãªã¹ã¯ãããžãæœãããã«ã¯ã瀟å ã«çžå¿ã®çµç¹ãç¯ããã°ãªããŸãããMicrosoft 365 E5 ãš Microsoft Azure Sentinel ã®å°å ¥ã¯ããã»ãã¥ãªãã£ãå®ã£ãŠããããã®äœå¶ã¥ããããé£èºçã«é²ãããã®ã§ããããããŸã§ã¯ãè åšã®çºçã¯äºåŸå ±åã ã£ãã®ã§ãããä»åŸã¯ãªã¹ã¯ãå¯ç¥ãããæ®µéã§å¯ŸåŠã§ãããããã¢ã¯ãã£ããªäœå¶ãžãšç§»è¡ã§ããã§ããããïŒæšæ æ°ïŒã
Microsoft Azure Sentinel ã®å°å ¥ã¯ã瀟å ã®ã»ãã¥ãªãã£ç£èŠã倧ããå¹çåããããšèææš æ°ã¯èšããŸãã
ãåŸæ¥ã¯ãAzure ATP ã Microsoft Defender ATP ãªã©ãè€æ°ã®ã³ã³ãœãŒã«ã確èªããå¥ã ã«ç®¡çããªããã°ãªããŸããã§ããããAzure Sentinel ã«éçŽã§ããããšã«ãã£ãŠãç£èŠãè åšãã³ãã£ã³ã°ããšãŠãå¹çåããããšãã§ããŸãããã»ãã¥ãªãã£ã¯æ¥µããŠéèŠã§ãããçŽæ¥å©çãçãããã§ã¯ãããŸãããããéå°ãªæè³ã¯é£ããåéã§ããã»ãã¥ãªãã£æ¥åã®æé©åã¯ãäŒæ¥çµå¶ã«ãšã£ãŠãåã°ããããšãªã®ã§ããïŒèææš æ°ïŒã
ãŸããæšäž æ°ã¯ Microsoft Azure Sentinel ã®å°å ¥ã«ãã£ãŠãå šç€Ÿã® IT ãå¯èŠåãããè åšãèªèãããããªã£ããããšèšããŸãã
ãããšãã°ãæ¥åéšéã§èªè£œããŠããã¢ããªã±ãŒã·ã§ã³ã«ã»ãã¥ãªãã£ãªã¹ã¯ãããããšããããããããäŒããŠæ¹ä¿®ããããšãã§ããŸãããIT ã€ã³ãã©åŽã«ããŠã¯èŠããªãã£ããªã¹ã¯ã§ã Azure Sentinel ã«ãã£ãŠãã¶ãåºãããšãã§ããããã«ãªã£ãã®ã§ããïŒæšäž æ°ïŒã
åœå å€ã§æå¹ãª IT ãã©ãããã©ãŒã ãšã㊠Azure ãæŽ»çšããŠãã
2019 幎 12 æçŸåšãã¿ããã°ã«ãŒãã§ã¯ Microsoft Azure Sentinel ã®æŽ»çšã«ãããSOC ãšããŠã®éçšãããæ·±ããæ®µéã«æ¥ãŠããŸãã
ãã»ãã¥ãªã㣠ãšã³ãžãã¢ãšããŠããããŸã§ã¯èªåã§ã«ãŒã«ãäœã£ãŠã¯ãšãªãé©çšããŠããŸãããããAzure Sentinel ã® AI ã®å®åã確ãããŠãããããªæèŠã§ãããæ€ç¥åºŠã®é«ãïŒèª€æ€ç¥ã®äœãïŒãã¯ã£ãããšæããŠããŸããä»åŸã¯ãã°ã®ååŸç¯å²ãæ¡å€§ããããšã«ãã£ãŠãããã«ã¢ã©ãŒãã®ç²ŸåºŠãé«ããããšãã§ããã§ããããïŒæšäž æ°ïŒã
匷åºãªã»ãã¥ãªãã£åºç€ãå®çŸã§ããããšã«ãã£ãŠãããã«æè»ãªåãæ¹ã«å¯Ÿå¿ã§ããç°å¢ãæŽããŠãããããšãèææš æ°ã¯ä»åŸã®å±æãèªããŸãã
ã Azure Sentinel ã®å°å ¥ã«ãã£ãŠãAzure ãåºç€ã«ããç°å¢ãæŽã£ããšèããŠããŸããããã¯ã€ãŸãããã©ã€ããŒã ã¯ã©ãŠãã§æ§ç¯ããŠããåºå¹¹ã·ã¹ãã çããããªã㯠ã¯ã©ãŠãã§ãæ€èšã§ããæ®µéã«ãªã£ããšããããšã§ããAzure ã«ãã£ãŠãªã¢ãŒãç°å¢ãæŽåããããšã§ãæéã»å Žæãšããå¶çŽããäºæ¥éšéãè§£æŸããçç£æ§åäžã«è²¢ç®ããŠãããããšæããŸããïŒèææš æ°ïŒã
ãŸããæšæ æ°ã¯ãã¿ããã°ã«ãŒãã®ä»åŸã®æé·æŠç¥ã«ããããã€ã¯ããœãããžã®æåŸ ãæ¬¡ã®ããã«è©±ããŸãã
ãèšåºæ€æ»ã®åéã¯ä»ãæ±åã¢ãžã¢ãã¯ãããšããæ°èåœã§ççºçãªæé·ãèŠããŠããŸããè¡£é£äœãããçšåºŠæºããããããšã«ãã£ãŠãå¥åº·ãå¿åããåããå éããŠããã®ã§ããå®éãæ¥æ¬ã§ã¯èããããªãã¹ããŒãã§æ€æ»ã©ãã®å»ºç¯ãé²ãã§ããŸãããã€ã¯ããœããã®è£œåã»ãµãŒãã¹ã«ã¯ãã¿ããã°ã«ãŒãã®ã¢ãžã¢å±éã«ãããŠã掻çšã§ãããã©ãããã©ãŒã ãšããŠããã£ãããšã»ãã¥ãªãã£ãæ ä¿ããã¬ããã³ã¹ãå¹ãããŠãããããšãæåŸ ããŠããŸããïŒæšæ æ°ïŒã
åŸæ¥ããã©ã€ããŒã SOC ã®æ§ç¯ã¯ãã»ãã¥ãªã㣠ãªã¹ã¯ã®ç®¡çäžéèŠã ãšèªèãããªããããéãããããžã§ã¯ãã ãšæããããŠããŸãããããããAzure Sentinel ãç»å Žããããšã§ãè¿ éãªç«ã¡äžããå¯èœãšãªã£ãã®ã§ãã匷åºãªã»ãã¥ãªãã£ãšããæ¥ååºç€ãæã«å ¥ããããšã«ãã£ãŠãã¿ããã°ã«ãŒãã¯äºæ¥å±éãå éãããå šäžçã®äººã ã«å¥åº·çãªæ®ããããããããŠããããšã§ãããã
[PR]æäŸïŒæ¥æ¬ãã€ã¯ããœãã

