AzureTracks

Practical Azure and Microsoft 365 security walkthroughs

Defender XDR

  • Saturday Heat – Bonus Walkthrough!

    Saturday Heat – Bonus Walkthrough!

    There is too much heat this week for me. I took the opportunity to try & find some distraction for you too! In this Saturday bonus article, we will build several practical security queries progressively. We will begin by reviewing raw Microsoft Entra sign-in data, add filters, summarize the results, extract values from dynamic fields,…

    Read article

  • Microsoft Sentinel Baseline Deployment: From Zero to Operational SOC

    Microsoft Sentinel Baseline Deployment: From Zero to Operational SOC

    SIEM best practices are clear: connect data intentionally. In this post, we build a baseline ingestion strategy that prioritizes high-value telemetry, aligns with Zero Trust, and avoids the “enable everything” trap.

    Read article

  • Azure Updates – Number 129 – January 24, 2026

    Azure Updates – Number 129 – January 24, 2026

    A summary update on Azure news that includes updates released from Microsoft Azure related to Azure, Architecture, Compute, Security Copilot and Sentinel topics. Save time digging around to find recent releases and changes.

    Read article

  • Future-Ready SOCs: Microsoft Sentinel Data Lake Powers AI-Driven Security

    Future-Ready SOCs: Microsoft Sentinel Data Lake Powers AI-Driven Security

    As 2025 wraps up, Microsoft Sentinel takes center stage with a major innovation announced at Ignite: Sentinel Data Lake. This feature is designed to unify security signals, reduce SIEM costs, and enable AI-powered threat detection at scale. In this article, we’ll explore what Sentinel Data Lake means for SOC operations, why it matters, and how…

    Read article