Sentinel Saturdays: Tag and Track Incidents with Custom Incident Labels
Incident management can quickly become messy when multiple analysts are working through the queue. Custom incident labels in Microsoft Sentinel help bring
Sometimes the data you need to hunt threats isn’t inside Sentinel. Maybe it’s a CSV on GitHub containing known malicious IPs or a public feed of compromised domains. The good
Thoughts, how-tos and research on Microsoft security.
Incident management can quickly become messy when multiple analysts are working through the queue. Custom incident labels in Microsoft Sentinel help bring
In a modern Security Operations Centre (SOC), time is everything. Analysts are often under pressure to triage alerts, investigate indicators, and respond
What the heck is Sentinel Skills Saturday?! I have an idea to showcase features within Sentinel and assist with sharing skills every
Introduction With the growing rise of cyber attacks, and the increased detections and awareness on the back of this, cyber attacks are
Microsoft have now added the ability to restore Conditional Access Policies which have been deleted in Microsoft Entra. This is really useful
As the world becomes more and more connected, and digital technologies continue to evolve, email remains a critical tool for communications both
ℹ️This blog post is part of a series of posts that delve into Application Control on Windows. This series will explore
Browse posts by topic.