Project

Microsoft Defender for Endpoint MindTree · Security Research

EDR · Threat Detection · MITRE ATT&CK

  • Security research and detection engineering for Microsoft Defender for Endpoint
  • Analysis and mitigation of false positives; machine events data analysis for True/False Positive classification
  • Emulation of APT behaviors and attacks to validate EDR detections aligned with MITRE ATT&CK
  • Authoring suppression rules for false positive detectors and handling customer detection issues with timely feedback and analysis reports