Microsoft 365 E5 and E7 customers get a tenant-specific answer on ISOC economics, plus seven MXDR365 agents and playbooks to run it 24×7
IRVINE, Calif., Sept. 30, 2026 /PRNewswire/ — Patriot Consulting, a Microsoft Solutions Partner for Security with Microsoft Verified Managed XDR solution status, today announced a free ISOC Cost Evaluation for Microsoft 365 E5 and E7 organizations adopting the newly announced Integrated Security Operations Center (ISOC) in Microsoft Defender. ISOC brings SIEM capabilities into the Microsoft Defender portal as a benefit of Microsoft 365 E5 and E7, including 90 days of Defender data retention starting November 15, 2026, and a $2.40 per GB ingestion meter for non-Microsoft data starting October 1, 2026.

A Benefit, Not a Product: Why the Math Matters
As Patriot explains in its analysis, ISOC in Microsoft Defender: Not a New Product, a New E5 and E7 Benefit, whether ISOC lowers cost depends on the tenant. The new meter is 44% below Sentinel’s $4.30 per GB pay-as-you-go list price. Existing Sentinel customers can opt in starting November 15, 2026, but doing so gives up the current E5 benefit of up to 5 MB of free ingestion per user per day, and organizations that already tier high-volume logs to the Sentinel data lake may already be optimized.
The ISOC Cost Evaluation compares each organization’s licensing, log volumes, and current tiering against ISOC’s retention and ingestion pricing, then delivers a tenant-specific recommendation.
“Patriot Consulting is thrilled to announce a complimentary ISOC assessment,” said Rick Cox, President of Patriot Consulting. “We will crunch the numbers and provide expert guidance for the quickest deployment path. We guarantee a quote in 24 hours, and we can often leverage Microsoft funding and discounts to offset our consulting fees.”
Agentic MXDR365 Operations on ISOC
Patriot’s MXDR365 24×7 managed detection and response service runs on Microsoft Defender XDR and Microsoft Sentinel and includes proprietary agents and automated playbooks that put ISOC’s shared signals and context to work:
- MXDR365 Vanguard, a threat intelligence agent that gathers public threat intelligence feeds from dozens of sources.
- MXDR365 Overwatch, a threat hunting agent that takes the baton from Vanguard and builds targeted threat hunts.
- MXDR365 Hindsight, a log ingestion latency detection agent that re-runs detection rules over the gap periods that ingestion delays create.
- MXDR365 Sentry, a deep analysis agent that runs a multi-pivot investigation, historical review, and adversarial verification against its own conclusion before it calls anything real. More coverage, less noise.
- MXDR365 Automated Identity Triage, a deterministic playbook that retrieves third-party OSINT on relevant indicators of compromise, compares it to historical data, and completes automated identity remediation in about one minute.
- MXDR365 Phishing Triage Agent, which examines user-reported phishing emails for signs of user interaction, then performs automated remediation.
- MXDR365 Minuteman, a local AI agent designed to protect against frontier model refusals. Read more in Your Right to a Local LLM for Self Defense.
“ISOC puts analysts and agents on the same signals and context in one place, and that is where our agents do their best work,” said Zach Moore, Vice President of MXDR365 at Patriot Consulting. “Vanguard and Overwatch turn fresh intelligence into targeted hunts, Hindsight closes ingestion blind spots, and Sentry challenges its own conclusion before it escalates anything.”
In Microsoft’s September 23 announcement, Rob Lefferts, Corporate Vice President, Microsoft Threat Protection, wrote: “Security operations and native protection must function as one system.”
Beyond the SOC
Patriot pairs MXDR365 with three offerings that extend the value of ISOC:
- SecureShield365, Patriot’s proactive security configuration hardening service, turns lessons learned from SOC investigations into hardened Microsoft Defender XDR configurations.
- AIShield365, Patriot’s newest solution, is designed to reduce risk through AI governance.
- Patriot Academy Premium offers live, instructor-led training on the latest Microsoft Defender XDR and Sentinel best practices.
Availability
Patriot’s ISOC Cost Evaluation is available now at no cost to Microsoft 365 E5 and E7 organizations (or anyone who wants help to understand if an upgrade to E5 or E7 will be cost justified to benefit from ISOC). Click here to request an ISOC Cost Evaluation.
About Patriot Consulting
Patriot Consulting Technology Group is one of the top Microsoft Security Partners in the United States. Each year we help an average of 4 million users deploy Microsoft Security technology. We focus 100% on securely deploying Microsoft Cloud technology with an emphasis on knowledge transfer—this empowers our clients to feel confident about both their security and investments in the Microsoft platform.

View original content to download multimedia:https://www.prnewswire.com/news-releases/patriot-consulting-launches-free-isoc-cost-evaluation-and-agentic-mxdr365-operations-for-microsofts-new-integrated-security-operations-center-302895050.html
SOURCE Patriot Consulting Technology
