Home - vishnupk001/CloudCore-SOC-Build-with-M365 GitHub Wiki

CloudCore SOC Build with M365

CloudCore SOC Build with M365 is a showcase of my end-to-end design and implementation of a secure, cloud-centric organization using the Microsoft 365 ecosystem. This project demonstrates my ability to plan, deploy, and manage a full-stack security architecture—from tenant setup to a fully integrated Security Operations Center (SOC) with automation.

It reflects hands-on experience with enterprise-grade Microsoft technologies, cloud security best practices, and Infrastructure as Code (IaC) with GitHub and Terraform.

Table of Contents

  1. Introduction
  2. Domain and Tenant Setup
  3. License Management
  4. User and Group Management
  5. CIS benchmarked policies (baseline policies)
  6. Windows Autopilot
  7. Device Onboarding
  8. Defender for Microsoft Office 365 Setup
  9. Secured Entra Access
  10. SIEM and Automation
  11. Configured Azure Sentinel
  12. Setting Up Virtual Machines (VMs) Using GitHub and Terraform
  13. SOAR Playbook Setup
  14. Conclusion

Objectives

  • Secure device onboarding using Autopilot.
  • Apply CIS benchmarked security policies via Intune.
  • Integrate Microsoft Defender for Endpoint.
  • Set up SIEM using Azure Sentinel.
  • Automate security operations using SOAR playbooks.