Sentinel Saturday - Are your analytics rules actually doing what you think?
Microsoft Sentinel analytics rules are often treated as a finished product. Once enabled they are assumed to be working quietly in the
Posts tagged with Sentinel.
Microsoft Sentinel analytics rules are often treated as a finished product. Once enabled they are assumed to be working quietly in the
Automation is one of the biggest ways to improve output and productivity within Microsoft Sentinel. When used well, it cuts repetitive work,
Introduction If you find yourself performing the same response steps over and over, it’s time to bring Playbooks into your workflow.
Sometimes the data you need to hunt threats isn’t inside Sentinel. Maybe it’s a CSV on GitHub containing known malicious
Incident management can quickly become messy when multiple analysts are working through the queue. Custom incident labels in Microsoft Sentinel help bring
What the heck is Sentinel Skills Saturday?! I have an idea to showcase features within Sentinel and assist with sharing skills every