Azure Sentinel
Microsoft Azure Based on its existing product, Log Analytics, Microsoft has created a new security toolAzure Sentinel. It is currently in preview mode.
So what is Sentinel?
It SIEM —Security Information and Event Management with Microsoft cloud built-in AI analytics. You can collect any type of event, warning, error, or simply logs, and use the big data dashboard engine to create dynamic reports. For example:


We can, of course, collect events from Azure services, but also from on-premises Windows or Linux servers, syslog devices, firewalls, Microsoft SCOM, etc.
Once data is there we can visualize it and the data query engine is quite powerful with many help guides and example provided:
Otherwise, you can use pre-built dashboards such as those for Fortinet , and many others.
Pricing depends on the volume of events sent to Azure. All Office 365 events are free.

Welcome to secure future !
What an article Can't Know
An article describes what applies to everyone. What varies from one organization to another is the inventory: which applications, which accounts, and which pieces of equipment are actually involved in your organization. The inventory determines the scope of the effort, and it cannot be summarized on a single page.
You'll be speaking directly with the engineers who will be doing the work, not with a middleman. We'll respond within 24 business hours.
Check what is still true
Announced dates are sometimes postponed, products are renamed, and conditions change. The blog tracks these topics over time: when a rule changes, a new post announces it.
Search for a topic in the blogIn the same issue
Three articles on the same topic. The blog has 136 articles, all of which are freely available.

