Filter
Exclude
Time range
-
Near
25 Jan 2022
This script was written to account for current limitations when leveraging the AzSentinel or Az.SecurityInsights powershell modules cda.ms/3Hx #MicrosoftSentinel #AzureSentinel #Azure #Cybersecurity #MicrosoftSecurity #Security #PowerShell

1
2
Microsoft Defender(s) alert / incident flow to Microsoft Sentinel #IPC #MDI #MDE #MDO #MDCA #MDC #M365D #AzSentinel @nedsc
1
1
7
This morning started with Google Cloud Platform (GCP) integration to AzSentinel. After 2 hours of troubleshooting, it's finally working 🙂
3
27
Boy what am I proud on our SOC team. Last night we defended multiple sophisticated multi-stage attacks on some clients. We correlated IOC's and mitigating actions before the #MSTIC noticed it and earlier than other third-party #EDR products..🥷🛡️🙏 #AzSentinel #M365Defender
4
5
57
Running a live webinar with .@Absa and .@Nedscaper showing real life attacks on #AzureAD and how #AzSentinel and our MDR detects and responds to these attacks...🕵️🥷🛡️ cc:/ @SpanishCC
2
16 Aug 2021
Auditd logs are quite noisy. Looking into parsing this logs into a SIEM (AzSentinel) and filtering out some of this noise for monitoring. I have seen some articles on logging based on RecordType_s however, does it not make sense to monitor based on the key? i.e key_s. any ideas?
1
2
3
Best practices for #AzureSentinel - contains guidance to use when deploying, managing, and using AzSentinel docs.microsoft.com/en-us/azu…

3
Finally had some time to work on #AzSentinel #PowerShell module. Currently trying to work on all the open issues on #GitHub. Currently updating the AlertRule function to include all the new great properties! #MVPBuzz #NextFence #AzureSentinel
1
1
10
De @nextfence_nl studio op basis van Microsoft Teams room begint vorm te krijgen. Binnenkort worden hier live sessies over #AZSentinel uitgezonden! Wij zijn opzoek naar camera / webcam, wie heeft een tip voor ons? 🎥 #RegenOpZondag
1
2
Fresh SOC analysts starting by @nextfence_nl very soon. Our NextEngine can help alleviate labor shortage by mitigating security risks automatically 24*7, including deploying and maintaining the AZSentinel components. #Automation #CICD #PowerShell
2
Thrilled to share my Sentinel knowledge. Who wants to join the next session and learn how you can solve security incidents. Invite? Send me a DM #MCT #AZSentinel @nextfence_nl #GrowTogether
2
13 Jul 2021
If you missed the #AzureSentinel webinar today catch the recording here onedrive.live.com/?authkey=%… Better title might be "Beginner's guide to AzSentinel Notebooks and #MSTICPy". Covers a lot of config basics that often trip people up.

1
27
86
Blogged: 'How to monitor emergency account(s) in Azure AD with MCAS'. Monitoring of Azure AD emergency accounts can be easily done with AzSentinel or AzMonitor but if you don't have such luxury in place #CloudAppSecurity can help in those situations. samilamppu.com/2021/07/05/az…

1
4
23
Ready for tonight’s session @ brunel where we talk about #AzureSentinel and how to manage it Ninja style 🙏#MVPBuzz #NextFence #AzSentinel
1
11
My script isn’t perfect and designed in a minimalist way. I’ve used the “AzSentinel” by @Wortell and “powershell-yaml” module which are required for this #PowerShell function. Active and template rules will be exported as YAML for comparison and CSV export for a short overview.
1
2
Released #AzSentinel version 0.6.17. See release page for all the fixes and updates in more details. Thanks to all the contributors! Release page: github.com/wortell/AZSentine… #AzureSentinel #Sentinel #MVPBuzz

4
9
#AzSentinel – Version 0.6.15 is available in #PowerShell gallery! This release includes some bug fixes and small new features for #MSSP. You can read more about it on the release page: github.com/wortell/AZSentine…

1
5
13
Replying to @olafhartong
Awesome Olaf, you can also use Get-AzSentinelAlertRuleTemplates to get all the available templates: github.com/wortell/AZSentine… And use Export-AzSentinel github.com/wortell/AZSentine… to export all the templates, currently only in JSON format.
1
2
5
#AzSentinel Version 0.6.12 is released and includes the new "Export-AzSentinel" function that you can use to export Scheduled, Hunting and Template rules from #AzureSentinel. And more fixes and new features. Thanks everyone for the great feedback! pkm-technology.com/azsentine…
1
11
17