Azure Sentinel Sigma & SOC Prime Integration (Part 3): Deploy to multiple workspaces and tenants

If you’re an investigator who wants to be proactive about looking for security threats, Azure Sentinel powerful hunting search and query tools to hunt for security threats across your organization’s data sources. But your systems and security appliance… Continue reading Azure Sentinel Sigma & SOC Prime Integration (Part 3): Deploy to multiple workspaces and tenants

Azure Sentinel Sigma & SOC Prime Integration (Part 2): Directly deploy to Azure Sentinel

This installment was written as a collaboration between   and .
 
Today’s cybersecurity landscape is filled with a variety of evolving threats, demanding new ways to protect your assets and stay on top of emerging security threats.
Continue reading Azure Sentinel Sigma & SOC Prime Integration (Part 2): Directly deploy to Azure Sentinel

Azure Sentinel Sigma and SOC Prime Integration (Part 1): Convert Sigma rules to Azure Sentinel

 
Introduction
 
As a cloud native SIEM solution, our innovation continues to help enterprises protect assets across distributed environments, analyze the growing volume of security data, and prioritize response to real threats.
 
We rec… Continue reading Azure Sentinel Sigma and SOC Prime Integration (Part 1): Convert Sigma rules to Azure Sentinel

ADF throws error: Unexpected error encountered filling record reader buffer ClassCastException

Today we want to write about a very interesting case that our team  Prathibha Vemulapalli, Charl Roux, and I worked this very week.
 
A parquet file was created with more than 100 columns to be imported on the AzureDW using Azure Data Factory… Continue reading ADF throws error: Unexpected error encountered filling record reader buffer ClassCastException

Custom RBAC role in Azure Storage to perform upload / download operation & restrict delete operation

Scenario:
This article explains step by step procedure to accomplish the below requirement in Azure Storage using custom RBAC role:

Read and write operation for container and blobs should be allowed for the users
Delete operations should be restricted… Continue reading Custom RBAC role in Azure Storage to perform upload / download operation & restrict delete operation