09 March Azure Sentinel
09 March Azure Sentinel
welcome to
Microsoft’s Drumbeat
Session on
Modernizing Security
Operations
LinkedIn: https://www.linkedin.com/in/kjatin/
Agenda
A.Current challenges of Security
Operations
B.What Microsoft is doing to solve it
• Introduction to SIEM
• Data Collection, Detection,
Investigation and Response.
Time: 10am-5pm
Quiz Winner: Branded Msoft Water Bottle 5 people. 5 question
Lab Winner: Microsoft Jacket.
Skills Shortage / Limited Staff
Budget Availability
New Technology: The Projected Total Economic Impact™ Of The Microsoft Teams Platform, a Forrester Consulting study commissioned by Microsoft, June 2020
Technical Overview : SIEM / SEM / SIM
Pre-requisites
None. Start here.
A cloud SIEM For the Cloud And for on premises
Delivers instant value to Scales to support your Uses AI and automationto
your defenders growing digital estate improve effectiveness
No brainer Advantages
• Auto-scales
• Easy collection from cloud sources
• Key log sources are free
A SIEM native to
the cloud
But there is more!
▪ $1B
▪ 3500+
▪ Trillions of
Collect Detect Investigate Respond
Azure Sentinel
Data store
Automation
User interface
Rules
Machine learning
Search & investigation
On Premises
CEF/Syslog
connector
(Optional)
Collector Custom
Proxy Connectors
Tech AzureSentinel@microsof
Blogs t.com
• https://techcommunity.microsoft.com/t5/azure-sentinel/help-for-security-
operations-centers-facing-new-challenges/ba-p/1278903
• https://www.microsoft.com/security/blog/security-operations/
• https://blog.johnjoyner.net/using-azure-sentinel-how-much-does-it-cost/
• https://docs.microsoft.com/en-us/azure/sentinel/overview
• https://github.com/Azure/Azure-Sentinel
• Videos:
• https://www.youtube.com/watch?v=2RuMhCmva4E Part : 1
• https://www.youtube.com/watch?v=DqUeQFgue-M Part : 2
• https://www.youtube.com/watch?v=rBPfDUOqkQo&t Part : 3
• https://youtu.be/EA-6YbU5qss Demo