AzureTracks

Practical Azure and Microsoft 365 security walkthroughs

rules

  • Automated Triage in Microsoft Sentinel

    Automated Triage in Microsoft Sentinel

    In today’s post we will look at some different ways to automate incident triage in Microsoft Sentinel. Organizations face an ever-increasing volume of security threats. Cyberattacks are becoming more sophisticated, and the sheer number of alerts can overwhelm even the most seasoned security teams. Automated triage in Microsoft Sentinel emerges as a crucial solution, empowering…

    Read article

  • Responding to Incidents with Microsoft Sentinel – Part 5 – Take Action with Automation

    Responding to Incidents with Microsoft Sentinel – Part 5 – Take Action with Automation

    In today’s article we will build on previous automation experiences to further develop your Microsoft Sentinel automation powers!  Today we will look at remediating incidents and alerts automatically.  We will explore auto-remediation using both playbooks and Sentinel Automation rules.

    Read article