Advanced Threat Analytics Installation
Advanced Threat Analytics Installation is a 1 week service in which IT Partner plans, designs, installs, and configures Advanced Threat Analytics (ATA) for organizations that need ATA deployed to help identify cyberattacks, abnormal activities and problems, and security risks in their IT infrastructure.
What this engagement is
Advanced Threat Analytics (ATA) helps protect IT infrastructure from information threats and cyberattacks by identifying three main types of threats: cyberattacks, abnormal activities and problems, and security risks. ATA technologies can detect suspicious activity at different stages of an attack, including infrastructure reconnaissance, malware implementation through software vulnerabilities or unsafe settings, and domain management activity where an attacker collects information to resume an attack using different credentials, entry points, and vulnerabilities. The objective of this service is to plan, design, and implement Advanced Threat Analytics service. Service metadata: SKU ITPWW330IMPOT; price 1950; duration 1 week; manager Roman Sotnik; date 2019-05-15; products Managed Services; type Security and Protection.
Success criteria
What you receive
How the work unfolds
AI-drafted for human review: Confirm scope, stakeholders, target schedule, change windows, access requirements, licensing status, and customer responsibilities. Review the intended ATA deployment approach and agree how issues and approvals will be handled during the 1 week engagement.
AI-drafted for human review: Review the Active Directory environment, domain controller placement, network topology, expected traffic visibility, server readiness, and security constraints that may affect ATA component placement. Identify prerequisites, access needs, and any customer-controlled network changes required before installation.
AI-drafted for human review: Validate or prepare required servers, operating system readiness, service accounts, domain permissions, DNS and time synchronization, firewall rules, and network traffic visibility as applicable to the approved ATA architecture. Confirm that required licenses and installation media are available.
AI-drafted for human review: Install and configure the required ATA components according to the agreed design. Connect ATA to the Active Directory environment, configure initial collection and monitoring settings, and verify that the ATA console is accessible to authorized administrators.
AI-drafted for human review: Validate ATA services, console access, component connectivity, domain data collection, and the ability to view reports and notifications in the ATA Center. Resolve installation or configuration issues within the agreed scope and provide a basic administrator introduction to working with ATA.
Prerequisites
Who does what
IT Partner
- Customer infrastructure research for developing appropriate architecture solution
- ATA architecture design
- Preparation of the environment for the ATA installation
- Installation and configuration of the ATA service
- Basic introduction of working with ATA
Your team
- Coordinate Client resources and staff schedules
- Provide a dedicated point of contact responsible for working with IT Partner
- Coordinate any outside vendor resources and schedules
- Configure all networking equipment, such as load balancers, routers, firewalls, and switches
- Review and approve engagement deliverables in a timely manner
What's not included
Limitations & technical notes
Frequently asked questions
What is included in IT Partner’s Advanced Threat Analytics Installation service?
IT Partner’s Advanced Threat Analytics Installation service includes infrastructure research, ATA architecture design, environment preparation, installation and configuration of the ATA service, and a basic introduction to working with ATA. The engagement is intended to plan, design, and implement ATA so the organization can begin using the ATA Center for reports and notifications.
How long does the Advanced Threat Analytics Installation engagement take?
The stated duration for the Advanced Threat Analytics Installation service is 1 week. The plan may vary depending on the customer’s needs and environment, so any schedule dependencies should be confirmed with IT Partner during scoping or kickoff.
How much does the Advanced Threat Analytics Installation service cost?
The listed price for the Advanced Threat Analytics Installation service is 1950. This price applies to the stated 1 week implementation scope, and any items outside the published scope should be confirmed with IT Partner before the engagement starts.
What is the main objective of the Advanced Threat Analytics Installation service?
The objective of the service is to plan, design, and implement Advanced Threat Analytics for the customer environment. ATA is used to help identify cyberattacks, abnormal activities and problems, and security risks in IT infrastructure.
What types of threats can Advanced Threat Analytics help identify after installation?
Advanced Threat Analytics helps identify three main categories of threats: cyberattacks, abnormal activities and problems, and security risks. The service description notes that ATA can detect suspicious activity at different attack stages, including infrastructure reconnaissance, malware implementation through vulnerabilities or unsafe settings, and suspicious domain management activity.
What are the key milestones during the ATA installation engagement?
The implementation plan includes a kickoff meeting, infrastructure research, preparation of the environment, ATA installation and configuration, and verifying and fixing issues. The source service description lists milestone names only, so detailed milestone activities should be confirmed with IT Partner if you need a more granular project plan.
What are the success criteria for this service?
The stated success criteria are that Advanced Threat Analytics is installed successfully and that the administrator can use the ATA Center to view reports and notifications. These criteria define completion around installation and administrator access to ATA reporting, not around a guaranteed threat-detection outcome.
Is the Advanced Threat Analytics license included in the service price?
No, the Advanced Threats Analytics license is listed as not included in this service. Customers should confirm licensing requirements and procurement responsibilities with IT Partner before the installation begins.
Does this service include creating or providing an on-premises or hybrid Active Directory domain?
No, an on-premises or hybrid Active Directory domain is listed as not included in the service. If your environment does not already have the required domain configuration, you should confirm with IT Partner whether additional work is needed before ATA can be installed.
Are there any prerequisites for the Advanced Threat Analytics Installation service?
The provided service scope does not list explicit prerequisites. However, because the ATA license and an on-premises or hybrid Active Directory domain are marked as not included, customers should confirm with IT Partner whether these are required readiness items, additional cost items, or both.
What does IT Partner handle during the engagement?
IT Partner is responsible for customer infrastructure research, ATA architecture design, preparation of the environment for ATA installation, installation and configuration of the ATA service, and a basic introduction to working with ATA. These responsibilities align with the service deliverables and define IT Partner’s implementation scope.
What responsibilities does the customer have during the ATA installation?
The customer is responsible for coordinating internal resources and staff schedules, providing a dedicated point of contact, coordinating outside vendor resources and schedules, configuring networking equipment such as load balancers, routers, firewalls, and switches, and reviewing and approving deliverables in a timely manner. These responsibilities matter because the installation depends on access, scheduling, and customer-controlled network configuration.
Does IT Partner configure firewalls, routers, switches, or load balancers as part of this service?
No, the customer is responsible for configuring networking equipment such as load balancers, routers, firewalls, and switches. IT Partner’s scope covers ATA planning, design, environment preparation, installation, configuration, and basic introduction, while customer-controlled network devices remain the client’s responsibility.
Will there be downtime or business impact during the ATA installation?
The service description does not specify expected downtime or business impact. Because environment preparation, network dependencies, and ATA configuration can vary by customer, downtime assumptions should be confirmed with IT Partner during kickoff or infrastructure research.
What access or staff involvement does IT Partner need from the customer?
The customer must provide a dedicated point of contact and coordinate client resources, staff schedules, and any outside vendor resources. This involvement is required because IT Partner needs timely access, approvals, and coordination to research the infrastructure, prepare the environment, and complete the ATA installation.
What happens after the Advanced Threat Analytics installation is complete?
After completion, the administrator should be able to use the ATA Center to view reports and notifications. IT Partner also provides a basic introduction to working with ATA. Ongoing monitoring, 24/7 support, and ongoing maintenance are not included by default, but are available as optional extra-cost add-ons delivered through IT Partner's NOC, third-party support partnerships, and a Microsoft Premier Support agreement.
Does this service include training for administrators?
The service includes a basic introduction to working with ATA. It does not list formal administrator training, advanced security operations training, or custom runbooks, so those needs should be discussed separately with IT Partner.
Does this service include remediation of threats found by ATA?
Threat remediation is not listed as an included deliverable. The engagement focuses on planning, designing, installing, and configuring ATA so administrators can view reports and notifications in the ATA Center.
Can the ATA architecture be tailored to our environment?
Yes, the service includes customer infrastructure research for developing an appropriate architecture solution and ATA architecture design. The plan may vary depending on customer needs, so IT Partner should confirm the final design approach after reviewing the environment.
What is the service SKU for Advanced Threat Analytics Installation?
The service SKU is ITPWW330IMPOT. This SKU refers to the Advanced Threat Analytics Installation service with the published 1 week duration and listed price of 1950.