Forum Discussion

Explorer27's avatar
Explorer27
Copper Contributor
May 15, 2020

Azure Sentinel data estimates for different type of data sources

Hello everyone!

 

I'd appreciate if someone could give advice how to estimate data volume/usage for different types of data sources like FW. IPS/IDS, domain controller logs etc.

The option to connect data sources to Azure Sentinel and get real information of data spent isn't an option right now so I'm looking for some calculator or similar tool to estimate what would be the cost and data spent for particular data sources in Azure Sentinel.

Thank you!

2 Replies

  • rasoolirfan's avatar
    rasoolirfan
    Copper Contributor

    Explorer27 Mostly Cloud require integration with platform security logs such as Azure security center, Defender ATP, Microsoft Cloud App Security, Azure NSG Logs, etc. 

     

    Customer would plan for budgets on below components in cloud

    1. Hosting Infrastructures required for collecting security events from data sources

    2. Platform services (Such as Event Hubs, Security Center API Graph) charges

    3. Bandwidth to transport (via Internet - i.e. Data Transfer out) if across regions

    4. Log consumption per month (Data Volume) (or) Events Per Second.

     

    Does Microsoft has Estimation guidance or calculator to obtain these inputs

     

    Regards,

    Rasool Irfan

     

Resources