End User Device Monitoring

%3CLINGO-SUB%20id%3D%22lingo-sub-1799032%22%20slang%3D%22en-US%22%3EEnd%20User%20Device%20Monitoring%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1799032%22%20slang%3D%22en-US%22%3E%3CP%3E%3CSPAN%3EI%E2%80%99ve%20had%20a%20few%20Azure%20Sentinel%20discussions%20with%20customers%20and%20invariably%20they%20ask%20about%20using%20it%20or%20integrating%20it%20with%20end%20user%20devices.%20Is%20it%20feasible%20to%20connect%20Windows%2010%20PCs%20to%20Sentinel%20or%20is%20there%20a%20better%20way%20of%20integrating%20with%20MDM%2FIntune%3F%3C%2FSPAN%3E%3C%2FP%3E%3C%2FLINGO-BODY%3E
Occasional Visitor

I’ve had a few Azure Sentinel discussions with customers and invariably they ask about using it or integrating it with end user devices. Is it feasible to connect Windows 10 PCs to Sentinel or is there a better way of integrating with MDM/Intune?

1 Reply

@emcken36 You can easily get the logs using the Microsoft Monitoring Agent and this article talks about getting some Intune data

 

https://techcommunity.microsoft.com/t5/azure-sentinel/secure-working-from-home-deep-insights-at-enro...