As Azure Sentinel Blogs grow in number, this Table of Contents will help you navigate the variety of topical areas. This includes articles on log management, data ingestion, hunting, investigations, detections, features and all things in between. The goal is to provide you with a central location to find information related to Azure Sentinel. | |
Learn about new and upcoming features as well as general announcements about Azure Sentinel. | |
Learn how to manage the data you have collected in Azure Sentinel. | |
Learn how to implement data collection in Azure Sentinel to make your data readily available for Detections, Hunting and Investigations. | |
Detection related blogs provide an example of how to use and understand the associated query that is available in the Detections category of the Azure Sentinel GitHub repository. | |
Hunting related blogs provide an example of how to use and understand the associated query that is available in the Hunting category of the Azure Sentinel GitHub repository. | |
Investigation related blogs provide an example of how to use Azure Sentinel to investigate a potential breach. This may include user experience features related to investigations and references to our variety of queries available in our Azure Sentinel GitHub repository | |
Machine Learning related blogs provide an example of how Azure Sentinel can use the built in machine learning algorithm’s available as part of the query language and how to use or implement custom machine learning algorithms. | |
| Log analytics/KQL tips related to use of the language, functions, parsing, joins, unions and so on. |
| Make requests for new or updated queries that go directly into the query backlog of the development team that brought you Azure Sentinel. |