Office 365 - Sentinel https://practical365.com/sentinel/ Practical Office 365 News, Tips, and Tutorials Sat, 10 Aug 2024 15:29:58 +0000 en-US hourly 1 https://wordpress.org/?v=6.6.1 https://practical365.com/wp-content/uploads/2022/06/favicon.png Office 365 - Sentinel https://practical365.com/sentinel/ 32 32 Practical Sentinel: Ingesting Networking Data in Microsoft Sentinel https://practical365.com/practical-sentinel-ingesting-networking-data-in-microsoft-sentinel/ https://practical365.com/practical-sentinel-ingesting-networking-data-in-microsoft-sentinel/#respond Tue, 13 Aug 2024 10:00:00 +0000 https://practical365.com/?p=61303 In this episode of Practical Sentinel, Thijs describes the different ingestion methods, how to choose the best method, and advises how to filter the ingested data.

The post Practical Sentinel: Ingesting Networking Data in Microsoft Sentinel appeared first on Practical 365.

]]>
https://practical365.com/practical-sentinel-ingesting-networking-data-in-microsoft-sentinel/feed/ 0
Practical Sentinel: Adding Networking Data to Microsoft Sentinel https://practical365.com/adding-networking-data-to-microsoft-sentinel/ https://practical365.com/adding-networking-data-to-microsoft-sentinel/#respond Mon, 15 Jul 2024 10:00:00 +0000 https://practical365.com/?p=61167 Are you looking to ingest your data into Sentinel? In this episode of Practical Sentinel, we review use cases and tips for ingesting networking data into Sentinel.

The post Practical Sentinel: Adding Networking Data to Microsoft Sentinel appeared first on Practical 365.

]]>
https://practical365.com/adding-networking-data-to-microsoft-sentinel/feed/ 0
Practical Sentinel: Auditing Multifactor Authentication with Sentinel https://practical365.com/practical-sentinel-auditing-multifactor-authentication-with-sentinel/ https://practical365.com/practical-sentinel-auditing-multifactor-authentication-with-sentinel/#respond Wed, 05 Jun 2024 10:00:00 +0000 https://practical365.com/?p=60948 In this episode of Practical Sentinel, Thijs Lecomte discusses how to create some basic KQL queries to track MFA usage.

The post Practical Sentinel: Auditing Multifactor Authentication with Sentinel appeared first on Practical 365.

]]>
https://practical365.com/practical-sentinel-auditing-multifactor-authentication-with-sentinel/feed/ 0
Practical Sentinel: Setting the Scene https://practical365.com/practical-sentinel-setting-the-scene/ https://practical365.com/practical-sentinel-setting-the-scene/#respond Thu, 02 May 2024 10:00:00 +0000 https://practical365.com/?p=60840 Welcome to Practical Sentinel! In the introductory blog of this series, we review how Microsoft positions Sentinel, what capabilities the product includes, and what it does well.

The post Practical Sentinel: Setting the Scene appeared first on Practical 365.

]]>
https://practical365.com/practical-sentinel-setting-the-scene/feed/ 0
Managing Exclusions for Microsoft Security Solutions https://practical365.com/managing-exclusions-for-microsoft-security-solutions/ https://practical365.com/managing-exclusions-for-microsoft-security-solutions/#respond Thu, 28 Mar 2024 10:00:00 +0000 https://practical365.com/?p=60684 In this blog, Thijs Lecomte reviews Exclusion for Microsoft Security Solutions, why they are important, and how to manage them.

The post Managing Exclusions for Microsoft Security Solutions appeared first on Practical 365.

]]>
https://practical365.com/managing-exclusions-for-microsoft-security-solutions/feed/ 0
Practical Protection: Malicious Azure Account Takeovers and What You Should Do About Them https://practical365.com/practical-protection-malicious-azure-account-takeovers-and-what-you-should-do-about-them/ https://practical365.com/practical-protection-malicious-azure-account-takeovers-and-what-you-should-do-about-them/#respond Thu, 29 Feb 2024 11:00:00 +0000 https://practical365.com/?p=60572 In this blog, we review a new organized phishing campaign impacting Azure Cloud environments and discuss what to do if your organization happens to fall victim.

The post Practical Protection: Malicious Azure Account Takeovers and What You Should Do About Them appeared first on Practical 365.

]]>
https://practical365.com/practical-protection-malicious-azure-account-takeovers-and-what-you-should-do-about-them/feed/ 0
Detecting Midnight Blizzard using Microsoft Sentinel https://practical365.com/detecting-midnight-blizzard-using-microsoft-sentinel/ https://practical365.com/detecting-midnight-blizzard-using-microsoft-sentinel/#respond Wed, 14 Feb 2024 11:00:00 +0000 https://practical365.com/?p=60460 This blog reviews the Midnight Blizzard Attack, providing some hypothetical scenarios of what actually happened and how it could've been prevented.

The post Detecting Midnight Blizzard using Microsoft Sentinel appeared first on Practical 365.

]]>
https://practical365.com/detecting-midnight-blizzard-using-microsoft-sentinel/feed/ 0