Managed Detection and Response
Using Structured Storytelling for Effective Defense with Microsoft Security Copilot
January 8, 2025 | 2 min read
Mona Ghadiri
Senior Director of Product Management
In my experience, computers are only as smart as the person in front of them. Same with AI. The results are dependent on the prompts given.
Today, users typing prompts from their brains into Microsoft Security Copilot may find it hard to get value. Prompts with adequate specificity are difficult to create, let alone repeat. Prompts also lack the ability to be version controlled or be used by multiple users without extra architecture and it's difficult to ensure plugins are deployed for the right role-based access control (RBAC) reasons.
Additionally, from a cost perspective, prompting is more like T9 texting, where you were charged by the letter, what letters and what syntax used. While the most popular slang would not have been invented (lol), it’s a great way to think about the need for repeatability of prompts to project costs for using or implementing Security Copilot because those sentences cost money.
But, what if a new wave of content delivery services for Microsoft Security Copilot could transform how people interact with it? If you didn’t have to worry about the sentence structure and what it could cost, but you could just add the noun, verb, or adverb the sentence needed, and have the structured story you need, all at a predictable cost?
So, what is a Managed Content Solution and why is it better for Microsoft Security Copilot than Managed Services?
Rather than promptbooks being tied down to the idea that your Copilot usage is driven by your Managed Security Service Provider (MSSP), or your MSSP has no visibility or access to Security Copilot, let us offer a third option: Pre-packaged, expertly-curated security content, framed similarly to a meal delivery service. This model, often called a Managed Content Solution, simplifies the complex task of threat management down to standard operating procedures and usage and cost predictable engagements with Security Copilot. Put simply, it uses structured storytelling for effective defense with Security Copilot.
I believe Managed Content Solutions provide three unique advantages over traditional Managed Services that make them a compelling choice for Security Copilot given existing models for charging and purchasing security compute units (SCUs):
- Customization and Control: Organizations can tell effective stories if people are using the same prompts and using them in the same ways. Otherwise, confounding variables may give the organizations the wrong impression about using the tools or their effectiveness.
- Cost-Effectiveness: Managed content solutions can be more economical than managed services. By providing targeted content without the overhead of a full-service solution, these services resemble the cost savings of cooking at home with a meal kit compared to dining out.
- Empowerment and Education: Beyond merely providing solutions, these services empower organizations by enhancing their own security capabilities. Like how meal kits impart cooking skills, managed content solutions can cover instances when conditions are known or expected or follow a similar pattern time after time—think things related to policy, investigations, use cases, or notifications are great fits.
And as organizations navigate the complex cybersecurity landscape, managed content solutions present a promising approach to working with Security Copilot.
Interested in learning more about how BlueVoyant can help your Microsoft Security Copilot journey? Our Microsoft Security Copilot Readiness Assessment turns your data into use cases for Security Copilot prompt standardization, and our Microsoft Security Copilot Deployment Service gets them right in your tenant to start your own cost-effective testing.
Related Reading
Company News
BlueVoyant Awarded Microsoft Worldwide Security Partner of the Year, Recognizing Leading-Edge Cyber Defense
June 27, 2024 | 2 min read
Microsoft
Microsoft Copilot for Security – Use Cases for Data Governance Teams Working with Auditors and Consultants
April 22, 2024 | 5 min read