AzureTracks

Practical Azure and Microsoft 365 security walkthroughs

status

  • Using Azure Dashboard with Sentinel

    Using Azure Dashboard with Sentinel

    In this post, I explore using Azure Dashboard to help summarize Sentinel reporting and to provide an enhanced method for non-technical users to understand the current incidents in Microsoft Sentinel. We will look at creating Azure Dashboards, KQL queries, displaying data in a meaningful way, and how to grant users permission to see the dashboard.

    Read article

  • Monitor Sentinel Data Connector Health – Alerting

    Monitor Sentinel Data Connector Health – Alerting

    Join me in taking a look at exploring Sentinel health data and using KQL to create an alert rule that tells our SOC team about data connector issues in Sentinel. This post walks through the KQL queries, exploring your data, and creating an alerting rule. Monitoring is an important part of good governance in Sentinel!

    Read article

  • Monitor Sentinel Data Connector Health

    Monitor Sentinel Data Connector Health

    There is more than one way to monitor most Azure infrastructure and data connectors are no exception. Today we look at creating a way to keep an eye on your data connectors operations in Sentinel, using Sentinel. Join me for a few minutes as we explore one of the important best practices in Microsoft Sentinel…

    Read article

  • October 2020 – Who turned out the lights on Microsoft Cloud?

    October 2020 – Who turned out the lights on Microsoft Cloud?

    Today we explore some sources of Microsoft Cloud status information, what happened this past week with some incidents in the Microsoft Cloud, and we talk about the rapid deployment of features into cloud services over the last 2 quarters. Join us for a few minutes as we discuss the Azure and Microsoft 365 status consoles…

    Read article