Azure Sentinel: What is it?

แชร์
ฝัง
  • เผยแพร่เมื่อ 25 ก.ค. 2024
  • Chapters in the video:
    00:00 Introduction
    00:22 Introducing Azure Sentinel
    01:13 About Azure Sentinel
    02:14 Azure Sentinel at a glance (architecture)
    03:12 Multi-Tenant Capable (MSSP)
    03:36 Pricing
    04:33 Forrester Total Economic Impact Study
    05:11 Collect security data from all sources across the organization
    06:46 What data can be ingested at no cost?
    06:53 Detect threats out-of-the-box
    07:45 Investigate threats with AI and hunt suspicious activities at scale
    08:23 Visualize and monitor your data
    09:01 Respond rapidly with built-in orchestration and automation
    10:21 Proactively hunt for threats across the organization
    11:15 Jupyter notebooks to hunt for security threats
    12:08 User & Entity Behavior Analytics
    13:00 Out-of-the-box and customizable SOC incident metrics
    13:46 Watchlists (Preview)
    14:38 Resources
    Link to deck used in the video: www.slideshare.net/MattSosema...
    Why Use Jupyter for Security Investigations?techcommunity.microsoft.com/t...
  • วิทยาศาสตร์และเทคโนโลยี

ความคิดเห็น • 23

  • @Semtx552
    @Semtx552 3 ปีที่แล้ว +2

    What a great overview and perfect timing for me to dig in! cant wait for the next vid. Thanks!
    i'll do my home work :)

  • @tmaund1
    @tmaund1 3 ปีที่แล้ว +2

    Outstanding update, thanks Matt!

  • @rezapalizban
    @rezapalizban 3 ปีที่แล้ว +1

    Great video! This is the perfect SIEM tool for companies but especially for those already invested in the Microsoft 365/Azure infrastructure.

  • @Blizardde
    @Blizardde 3 ปีที่แล้ว +1

    Thanks Matt, informative video.

  • @inkironmojo775
    @inkironmojo775 3 ปีที่แล้ว

    Awesome vid .. learnt heaps .. thanks

  • @MoreLaterDude
    @MoreLaterDude 3 ปีที่แล้ว

    Great video!

  • @irfankazi3518
    @irfankazi3518 หลายเดือนก่อน

    Helpfull

  • @steveanderson1779
    @steveanderson1779 3 ปีที่แล้ว

    Awesome presentation, do you have the Powerpoint presentation available? my version does not interact with the dashboard

    • @MattSoseman
      @MattSoseman  3 ปีที่แล้ว

      The PPT is available in the video description

  • @yashmudaliar6590
    @yashmudaliar6590 3 ปีที่แล้ว

    Hey Matt, great explanation skills you got there. However I was wondering if it's possible to stream the alerts and incidents to a different ticketing system like ServiceNow, ConnectWise etc. Please answer.

    • @MattSoseman
      @MattSoseman  3 ปีที่แล้ว

      Yes that’s possible using a playbook

    • @yashmudaliar6590
      @yashmudaliar6590 3 ปีที่แล้ว

      @@MattSoseman Would it be possible to please explain with a few steps on this? It will be really helpful.

    • @MattSoseman
      @MattSoseman  3 ปีที่แล้ว

      Absolutely, I’ll do a video on it in the coming weeks. Here’s more info in the meantime techcommunity.microsoft.com/t5/azure-sentinel/azure-sentinel-incident-bi-directional-sync-with-servicenow/ba-p/1667771

  • @OZDutchy
    @OZDutchy 3 ปีที่แล้ว +2

    Great video as always. Could you please share the slide deck?

    • @MattSoseman
      @MattSoseman  3 ปีที่แล้ว +2

      It’s in the link in the video description

    • @OZDutchy
      @OZDutchy 3 ปีที่แล้ว +1

      @@MattSoseman thanks.

  • @sethzwicker3631
    @sethzwicker3631 3 ปีที่แล้ว +1

    Great video as always! How about something on the new MS Web content Filter, currently in beta?

    • @MattSoseman
      @MattSoseman  3 ปีที่แล้ว

      Send me a link!

    • @sethzwicker3631
      @sethzwicker3631 3 ปีที่แล้ว +1

      @@MattSoseman docs.microsoft.com/en-us/windows/security/threat-protection/microsoft-defender-atp/web-content-filtering#turn-on-web-content-filtering

    • @MattSoseman
      @MattSoseman  3 ปีที่แล้ว +1

      Oh that, I do have a video on that :) th-cam.com/video/XQ3TmOTP5jw/w-d-xo.html

    • @sethzwicker3631
      @sethzwicker3631 3 ปีที่แล้ว

      @@MattSoseman Perfect, thanks!

  • @mikehobbs6060
    @mikehobbs6060 2 ปีที่แล้ว

    As always - Great Video Matt. Bummer that to download the resources, you need a paid account.