Recent Blogs
Automate Security Workflows in Microsoft Sentinel with BlinkOps
Security teams are under increasing pressure to respond faster to threats while managing growing complexity across their environments...
Sep 18, 2025359Views
1like
0Comments
Thanks to Javier Soriano, Principal Product Manager - OneSOC Customer Experience Engineering, for the peer review
Introduction
Although the recommended approach is to not have multiple SIEM solut...
Sep 10, 2025453Views
1like
0Comments
Co-author - Ashwin Patil
Security teams today face an overwhelming challenge: every data point is now a potential security signal and SOCs are drowning in complex logs, trying to find the needle in...
Sep 09, 20252.6KViews
5likes
1Comment
Key updates
On April 3, 2025, we publicly previewed two new tables to support STIX (Structured Threat Information eXpression) indicator and object schemas: ThreatIntelIndicators and ThreatIntelObje...
Aug 05, 20253.1KViews
1like
2Comments
Welcome to the third entry of our blog series on automating Microsoft Sentinel.
In this series, we’re showing you how to automate various aspects of Microsoft Sentinel, from simple automation of Se...
Jul 16, 20252KViews
0likes
0Comments
21 MIN READ
Introduction
A huge thank you to MariaSousaValadas for contributing and reviewing this post
In a SIEM you may need to upload data for correlation, such as high value assets, IP ranges from your ...
Jul 14, 20251.8KViews
3likes
0Comments
Microsoft Sentinel is moving to the Microsoft Defender portal to deliver a unified, AI-powered security operations experience. Many customers have already made the move. Learn how to plan your transi...
Jul 10, 2025790Views
0likes
0Comments
As organizations continue to scale their security operations, managing the volume and cost of data ingestion becomes increasingly critical. Microsoft Sentinel’s new Summary Rules Templates offer a st...
Jul 08, 2025985Views
0likes
0Comments
Are you managing the security needs of a large organization or a managed security service provider (MSSP)? Would you like a unified view of all the cases you are managing across these tenants?
We...
Jun 19, 2025847Views
1like
0Comments
In the ever-evolving landscape of cybersecurity, both automation and infrastructure-as-code (IaC) have become indispensable. SIEM solutions, traditionally known for their complex configurations and m...
Jun 16, 20251.5KViews
2likes
2Comments
Resources
Tags
- microsoft sentinel216 Topics
- investigation98 Topics
- security96 Topics
- what's new90 Topics
- detection85 Topics
- siem83 Topics
- hunting65 Topics
- soar44 Topics
- threat hunting35 Topics
- solutions35 Topics