Azure Blog Updates

Main menu

Skip to content
  • Home

Tag Archives: sentinel

Post navigation

← Older posts

Build-Your-Own Machine Learning detections in the AI immersed Azure Sentinel SIEM

Posted on 2020-10-07 by satonaoki

Azure Sentinel articles > Build-Your-Own Machine Learning detections in the AI immersed Azure Sentinel SIEM
https://techcommunity.microsoft.com/t5/azure-sentinel/build-your-own-machine-learning-detections-in-the-ai-immersed/ba-p/1750920

Tagged azure, english, sentinel

Azure Sentinel To-Go (Part2): Integrating a Basic Windows Lab 🧪 via ARM Templates 🚀

Posted on 2020-10-06 by satonaoki

Azure Sentinel articles > Azure Sentinel To-Go (Part2): Integrating a Basic Windows Lab 🧪 via ARM Templates 🚀
https://techcommunity.microsoft.com/t5/azure-sentinel/azure-sentinel-to-go-part2-integrating-a-basic-windows-lab-via/ba-p/1742165

Tagged azure, english, sentinel

Watching the Watchers: Monitoring Azure Sentinel Query Activity for Malicious Activity.

Posted on 2020-10-02 by satonaoki

Azure Sentinel articles > Watching the Watchers: Monitoring Azure Sentinel Query Activity for Malicious Activity.
https://techcommunity.microsoft.com/t5/azure-sentinel/watching-the-watchers-monitoring-azure-sentinel-query-activity/ba-p/1732450

Tagged azure, english, sentinel

Understanding Microsoft Teams Data Schema in Azure Sentinel – Analyst / Researcher View

Posted on 2020-09-30 by satonaoki

Azure Sentinel articles > Understanding Microsoft Teams Data Schema in Azure Sentinel – Analyst / Researcher View
https://techcommunity.microsoft.com/t5/azure-sentinel/understanding-microsoft-teams-data-schema-in-azure-sentinel/ba-p/1722876

Tagged azure, english, sentinel

Auditing Azure Sentinel activities

Posted on 2020-09-30 by satonaoki

Azure Sentinel articles > Auditing Azure Sentinel activities
https://techcommunity.microsoft.com/t5/azure-sentinel/auditing-azure-sentinel-activities/ba-p/1718328

Tagged azure, english, sentinel

Enriching Windows Security Events with Parameterized Function

Posted on 2020-09-30 by satonaoki

Azure Sentinel articles > Enriching Windows Security Events with Parameterized Function
https://techcommunity.microsoft.com/t5/azure-sentinel/enriching-windows-security-events-with-parameterized-function/ba-p/1712564

Tagged azure, english, sentinel

Analysing Web Shell Attacks with Azure Defender data in Azure Sentinel

Posted on 2020-09-30 by satonaoki

Azure Sentinel articles > Analysing Web Shell Attacks with Azure Defender data in Azure Sentinel
https://techcommunity.microsoft.com/t5/azure-sentinel/analysing-web-shell-attacks-with-azure-defender-data-in-azure/ba-p/1724130

Tagged azure, english, sentinel

What’s new: Azure Sentinel User and Entity Behavior Analytics in Public Preview!

Posted on 2020-09-24 by satonaoki

Azure Sentinel articles > What’s new: Azure Sentinel User and Entity Behavior Analytics in Public Preview!
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-azure-sentinel-user-and-entity-behavior-analytics-in/ba-p/1700953

Tagged azure, english, sentinel

What’s New: PowerShell+Azure Sentinel notebooks to supercharge your hunting and investigations!

Posted on 2020-09-23 by satonaoki

Azure Sentinel articles > What’s New: PowerShell+Azure Sentinel notebooks to supercharge your hunting and investigations!
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-powershell-azure-sentinel-notebooks-to-supercharge/ba-p/1695969

Tagged azure, english, sentinel

PowerShell+Azure Sentinel notebooks to supercharge your threat hunting and investigations!

Posted on 2020-09-23 by satonaoki

Azure Sentinel articles > PowerShell+Azure Sentinel notebooks to supercharge your threat hunting and investigations!
https://techcommunity.microsoft.com/t5/azure-sentinel/powershell-azure-sentinel-notebooks-to-supercharge-your-threat/ba-p/1695969

Tagged azure, english, sentinel

What’s new: The new Azure Sentinel Notebooks experience is now in public preview!

Posted on 2020-09-23 by satonaoki

Azure Sentinel articles > What’s new: The new Azure Sentinel Notebooks experience is now in public preview!
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-the-new-azure-sentinel-notebooks-experience-is-now-in/ba-p/1695235

Tagged azure, english, sentinel

What’s new: Threat Intelligence menu item in Public Preview!

Posted on 2020-09-23 by satonaoki

Azure Sentinel articles > What’s new: Threat Intelligence menu item in Public Preview!
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-threat-intelligence-menu-item-in-public-preview/ba-p/1646597

Tagged azure, english, sentinel

Stay ahead of threats with new innovations from Azure Sentinel

Posted on 2020-09-23 by satonaoki

Azure Sentinel articles > Stay ahead of threats with new innovations from Azure Sentinel
https://techcommunity.microsoft.com/t5/azure-sentinel/stay-ahead-of-threats-with-new-innovations-from-azure-sentinel/ba-p/1693166

Tagged azure, english, sentinel

How to align your Analytics with time windows in Azure Sentinel using KQL (Kusto Query Language)

Posted on 2020-09-21 by satonaoki

Azure Sentinel articles > How to align your Analytics with time windows in Azure Sentinel using KQL (Kusto Query Language)
https://techcommunity.microsoft.com/t5/azure-sentinel/how-to-align-your-analytics-with-time-windows-in-azure-sentinel/ba-p/1667574

Tagged azure, english, sentinel

What’s new: Analytics FileHash entity hits GA!

Posted on 2020-09-19 by satonaoki

Azure Sentinel articles > What’s new: Analytics FileHash entity hits GA!
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-analytics-filehash-entity-hits-ga/ba-p/1684757

Tagged azure, english, sentinel

What’s new: Office 365 Advanced Threat Protection connector in Public Preview

Posted on 2020-09-18 by satonaoki

Azure Sentinel articles > What’s new: Office 365 Advanced Threat Protection connector in Public Preview
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-office-365-advanced-threat-protection-connector-in/ba-p/1676950

Tagged azure, english, sentinel

Azure Sentinel Incident Bi-directional sync with ServiceNow.

Posted on 2020-09-15 by satonaoki

Azure Sentinel articles > Azure Sentinel Incident Bi-directional sync with ServiceNow.
https://techcommunity.microsoft.com/t5/azure-sentinel/azure-sentinel-incident-bi-directional-sync-with-servicenow/ba-p/1667771

Tagged azure, english, sentinel

What’s New: Cross-workspace Analytics Rules

Posted on 2020-09-15 by satonaoki

Azure Sentinel articles > What’s New: Cross-workspace Analytics Rules
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-cross-workspace-analytics-rules/ba-p/1664211

Tagged azure, english, sentinel

How to Protect Office 365 with Azure Sentinel

Posted on 2020-09-12 by satonaoki

Azure Sentinel articles > How to Protect Office 365 with Azure Sentinel
https://techcommunity.microsoft.com/t5/azure-sentinel/how-to-protect-office-365-with-azure-sentinel/ba-p/1656939

Tagged azure, english, sentinel

What’s new: Microsoft Teams connector in Public Preview

Posted on 2020-09-09 by satonaoki

Azure Sentinel articles > What’s new: Microsoft Teams connector in Public Preview
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-microsoft-teams-connector-in-public-preview/ba-p/1640003

Tagged azure, english, sentinel

How to integrate vulnerability management in Azure Sentinel

Posted on 2020-09-09 by satonaoki

Azure Sentinel articles > How to integrate vulnerability management in Azure Sentinel
https://techcommunity.microsoft.com/t5/azure-sentinel/how-to-integrate-vulnerability-management-in-azure-sentinel/ba-p/1635728

Tagged azure, english, sentinel

What’s New: Azure Firewall Connector in Public Preview!

Posted on 2020-09-09 by satonaoki

Azure Sentinel articles > What’s New: Azure Firewall Connector in Public Preview!
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-azure-firewall-connector-in-public-preview/ba-p/1632764

Tagged azure, english, sentinel

What’s new: Azure DDoS Protection connector in Public Preview for Azure Sentinel

Posted on 2020-09-09 by satonaoki

Azure Sentinel articles > What’s new: Azure DDoS Protection connector in Public Preview for Azure Sentinel
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-azure-ddos-protection-connector-in-public-preview-for/ba-p/1646681

Tagged azure, english, sentinel

What’s new: Microsoft Teams connector in Public Preview

Posted on 2020-09-07 by satonaoki

Azure Sentinel articles > What’s new: Microsoft Teams connector in Public Preview
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-microsoft-teams-connector-in-public-preview/ba-p/1640003

Tagged azure, english, sentinel

How to integrate vulnerability management in Azure Sentinel

Posted on 2020-09-07 by satonaoki

Azure Sentinel articles > How to integrate vulnerability management in Azure Sentinel
https://techcommunity.microsoft.com/t5/azure-sentinel/how-to-integrate-vulnerability-management-in-azure-sentinel/ba-p/1635728

Tagged azure, english, sentinel

What’s New: Azure Firewall Connector in Public Preview!

Posted on 2020-09-04 by satonaoki

Azure Sentinel articles > What’s New: Azure Firewall Connector in Public Preview!
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-azure-firewall-connector-in-public-preview/ba-p/1632764

Tagged azure, english, sentinel

Remediate Vulnerable Secure Channel Connections with the Insecure Protocols Workbook

Posted on 2020-08-28 by satonaoki

Azure Sentinel articles > Remediate Vulnerable Secure Channel Connections with the Insecure Protocols Workbook
https://techcommunity.microsoft.com/t5/azure-sentinel/remediate-vulnerable-secure-channel-connections-with-the/ba-p/1611871

Tagged azure, english, sentinel

What’s New: Query line numbering, Azure Sentinel in the schema pane

Posted on 2020-08-19 by satonaoki

Azure Sentinel articles > What’s New: Query line numbering, Azure Sentinel in the schema pane
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-query-line-numbering-azure-sentinel-in-the-schema/ba-p/1596990

Tagged azure, english, sentinel

MSTIC Notebooklets – Fast Tracking CyberSec Jupyter Notebooks

Posted on 2020-08-18 by satonaoki

Azure Sentinel articles > MSTIC Notebooklets – Fast Tracking CyberSec Jupyter Notebooks
https://techcommunity.microsoft.com/t5/azure-sentinel/mstic-notebooklets-fast-tracking-cybersec-jupyter-notebooks/ba-p/1594169

Tagged azure, english, sentinel

Monitoring Azure Kubernetes Service (AKS) with Azure Sentinel

Posted on 2020-08-14 by satonaoki

Azure Sentinel articles > Monitoring Azure Kubernetes Service (AKS) with Azure Sentinel
https://techcommunity.microsoft.com/t5/azure-sentinel/monitoring-azure-kubernetes-service-aks-with-azure-sentinel/ba-p/1583204

Tagged azure, english, sentinel

Announcing a new Azure Sentinel GitHub Leaderboard!

Posted on 2020-08-13 by satonaoki

Azure Sentinel articles > Announcing a new Azure Sentinel GitHub Leaderboard!
https://techcommunity.microsoft.com/t5/azure-sentinel/announcing-a-new-azure-sentinel-github-leaderboard/ba-p/1582674

Tagged azure, english, sentinel

Accelerate your Azure Sentinel Deployment with this Azure DevOps Boards Template

Posted on 2020-08-12 by satonaoki

Azure Sentinel articles > Accelerate your Azure Sentinel Deployment with this Azure DevOps Boards Template
https://techcommunity.microsoft.com/t5/azure-sentinel/accelerate-your-azure-sentinel-deployment-with-this-azure-devops/ba-p/1449414

Tagged azure, english, sentinel

Guided Hunting Notebook: Base64 -Encoded Linux Commands

Posted on 2020-08-11 by satonaoki

Azure Sentinel articles > Guided Hunting Notebook: Base64 -Encoded Linux Commands
https://techcommunity.microsoft.com/t5/azure-sentinel/guided-hunting-notebook-base64-encoded-linux-commands/ba-p/1579484

Tagged azure, english, sentinel

Secure your Calls- Monitoring Microsoft TEAMS CallRecords Activity Logs using Azure Sentinel

Posted on 2020-08-09 by satonaoki

Azure Sentinel articles > Secure your Calls- Monitoring Microsoft TEAMS CallRecords Activity Logs using Azure Sentinel
https://techcommunity.microsoft.com/t5/azure-sentinel/secure-your-calls-monitoring-microsoft-teams-callrecords/ba-p/1574600

Tagged azure, english, sentinel

Ingesting log files from AWS S3 using AWS Lambda

Posted on 2020-08-08 by satonaoki

Azure Sentinel articles > Ingesting log files from AWS S3 using AWS Lambda
https://techcommunity.microsoft.com/t5/azure-sentinel/ingesting-log-files-from-aws-s3-using-aws-lambda/ba-p/1571136

Tagged azure, english, sentinel

Azure Sentinel Insecure Protocols Workbook Reimagined

Posted on 2020-08-07 by satonaoki

Azure Sentinel articles > Azure Sentinel Insecure Protocols Workbook Reimagined
https://techcommunity.microsoft.com/t5/azure-sentinel/azure-sentinel-insecure-protocols-workbook-reimagined/ba-p/1558375

Tagged azure, english, sentinel

What’s new: SOC operational metrics now available in Azure Sentinel

Posted on 2020-08-06 by satonaoki

Azure Sentinel articles > What’s new: SOC operational metrics now available in Azure Sentinel
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-soc-operational-metrics-now-available-in-azure/ba-p/1439002

Tagged azure, english, sentinel

What’s new: SOC operational metrics now available in Sentinel

Posted on 2020-08-04 by satonaoki

Azure Sentinel articles > What’s new: SOC operational metrics now available in Sentinel
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-soc-operational-metrics-now-available-in-sentinel/ba-p/1439002

Tagged azure, english, sentinel

What’s new: Azure Sentinel and Microsoft Defender ATP improved alert integration

Posted on 2020-08-04 by satonaoki

Azure Sentinel articles > What’s new: Azure Sentinel and Microsoft Defender ATP improved alert integration
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-azure-sentinel-and-microsoft-defender-atp-improved/ba-p/1562339

Tagged azure, english, sentinel

Whats new: Azure Sentinel and Microsoft Defender ATP improved alert integration

Posted on 2020-08-03 by satonaoki

Azure Sentinel articles > Whats new: Azure Sentinel and Microsoft Defender ATP improved alert integration
https://techcommunity.microsoft.com/t5/azure-sentinel/whats-new-azure-sentinel-and-microsoft-defender-atp-improved/ba-p/1562339

Tagged azure, english, sentinel

Announcing the Azure Sentinel Hackathon winners

Posted on 2020-07-28 by satonaoki

Azure Sentinel articles > Announcing the Azure Sentinel Hackathon winners
https://techcommunity.microsoft.com/t5/azure-sentinel/announcing-the-azure-sentinel-hackathon-winners/ba-p/1548240

Tagged azure, english, sentinel

What’s New: Incident Auto-refresh hits GA!

Posted on 2020-07-28 by satonaoki

Azure Sentinel articles > What’s New: Incident Auto-refresh hits GA!
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-incident-auto-refresh-hits-ga/ba-p/1548104

Tagged azure, english, sentinel

Enrich Azure Sentinel security incidents with the RiskIQ Intelligence Connector

Posted on 2020-07-25 by satonaoki

Azure Sentinel articles > Enrich Azure Sentinel security incidents with the RiskIQ Intelligence Connector
https://techcommunity.microsoft.com/t5/azure-sentinel/enrich-azure-sentinel-security-incidents-with-the-riskiq/ba-p/1534412

Tagged azure, english, sentinel

Hunting the Clues- Azure Sentinel Administrative Suspicious Activities Library

Posted on 2020-07-24 by satonaoki

Azure Sentinel articles > Hunting the Clues- Azure Sentinel Administrative Suspicious Activities Library
https://techcommunity.microsoft.com/t5/azure-sentinel/hunting-the-clues-azure-sentinel-administrative-suspicious/ba-p/1510773

Tagged azure, english, sentinel

Azure Sentinel Ninja Training: The July 2020 update

Posted on 2020-07-22 by satonaoki

Azure Sentinel articles > Azure Sentinel Ninja Training: The July 2020 update
https://techcommunity.microsoft.com/t5/azure-sentinel/azure-sentinel-ninja-training-the-july-2020-update/ba-p/1537247

Tagged azure, english, sentinel

New Azure Sentinel connectors

Posted on 2020-07-22 by satonaoki

Azure Sentinel articles > New Azure Sentinel connectors
https://techcommunity.microsoft.com/t5/azure-sentinel/new-azure-sentinel-connectors/ba-p/1535786

Tagged azure, english, sentinel

Hunting the Demons- Azure Sentinel Administrative Suspicious Activities Library

Posted on 2020-07-21 by satonaoki

Azure Sentinel articles > Hunting the Demons- Azure Sentinel Administrative Suspicious Activities Library
https://techcommunity.microsoft.com/t5/azure-sentinel/hunting-the-demons-azure-sentinel-administrative-suspicious/ba-p/1510773

Tagged azure, english, sentinel

What’s New: Cross Workspace Hunting is now available!

Posted on 2020-07-17 by satonaoki

Azure Sentinel articles > What’s New: Cross Workspace Hunting is now available!
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-cross-workspace-hunting-is-now-available/ba-p/1519195

Tagged azure, english, sentinel

Azure Sentinel Workbooks 101 (with sample Workbook)

Posted on 2020-07-17 by satonaoki

Azure Sentinel articles > Azure Sentinel Workbooks 101 (with sample Workbook)
https://techcommunity.microsoft.com/t5/azure-sentinel/azure-sentinel-workbooks-101-with-sample-workbook/ba-p/1409216

Tagged azure, english, sentinel

What’s New: Azure Sentinel Machine Learning Behavior Analytics: Anomalous RDP Login Detection

Posted on 2020-07-15 by satonaoki

Azure Sentinel articles > What’s New: Azure Sentinel Machine Learning Behavior Analytics: Anomalous RDP Login Detection
https://techcommunity.microsoft.com/t5/azure-sentinel/what-s-new-azure-sentinel-machine-learning-behavior-analytics/ba-p/1521988

Tagged azure, english, sentinel

Post navigation

← Older posts
Azure-related blog posts are aggregated. Azure関連ブログなどを集約しています。日本語情報は、japaneseタグで確認できます。 Admin: SATO Naoki (Neo) (Twitter: @satonaoki)

タグ

activedirectory ai allazure allazurejp apimanagement appcenter appservice azure azureblog azurejp botframework cloudplatformnewsbytes cloudserverjp dataexplorer datalake devcommunity devops devtestlabs english government iot japanese logicapps machinelearning marketplace microsoftr msdnjp officialmsblog oms paasdev powerbi roadmap satonaoki securitycenter securitycompliance sentinel servicebus servicefabric serviceupdates serviceupdatesjp sqldatabase sqlserver synapseanalytics technetjp visualstudio

Recent Posts

  • Migration to a new site
  • Azure DevOps Server 2020 RTW now available
  • Build-Your-Own Machine Learning detections in the AI immersed Azure Sentinel SIEM
  • General Availability of Private Endpoint for Web App
  • Deploy your resources on the new Premium v3 SKU with an ARM template

Meta

  • Log in
  • Entries feed
  • Comments feed
  • WordPress.org

Archives

  • October 2020
  • September 2020
  • August 2020
  • July 2020
  • June 2020
  • May 2020
  • April 2020
  • March 2020
  • February 2020
  • January 2020
  • December 2019
  • November 2019
  • October 2019
  • September 2019
  • August 2019
  • July 2019
  • June 2019
  • May 2019
  • April 2019
  • March 2019
  • February 2019
  • January 2019
  • December 2018
  • November 2018
  • October 2018
  • September 2018
  • August 2018
  • July 2018
  • June 2018
  • May 2018
  • April 2018
  • March 2018
  • February 2018
  • January 2018
  • December 2017
  • November 2017
  • October 2017
  • September 2017
  • August 2017
  • July 2017
  • June 2017
  • May 2017
  • April 2017
  • March 2017
  • February 2017
  • January 2017
  • December 2016
  • November 2016
  • October 2016
  • September 2016
  • August 2016
  • July 2016
  • June 2016
  • May 2016
  • April 2016
  • March 2016
Proudly powered by WordPress Theme: Forever by WordPress.com.