Microsoft Sentinel – Mimecast Data Connector
This post details the Mimecast Data Connector for Microsoft Sentinel and how to configure the ingestion of logs into Microsoft Sentinel.
The Technical Brain Dump of Cyber Security
This post details the Mimecast Data Connector for Microsoft Sentinel and how to configure the ingestion of logs into Microsoft Sentinel.
This article focuses and explores the new Data Federation in Data Connectors functionality in Microsoft Sentinel.
This article provides a checklist of Microsoft Sentinel data source onboarding considerations when looking to ingest data from new sources.
This article describes a work around method to restrict user device registration into Entra ID for personal devices.
This article details using Watchlists with Microsoft Sentinel, including how to get a Watchlist setup and example KQL queries.
This post contains the download link for my Microsoft Defender Device Actions Cheat Sheet which details the device actions available.
This post contains the download link for my Microsoft Defender Cheat Sheet which details each of the Defender components.
This post details the different methods of Device Tagging with Microsoft Defender for Endpoint. Methods include manual & dynamic methods.
This guide details the configuration for Azure Activity Scoped by Management Groups, as well as scoping by Subscription.
This guide covers the methods of archiving logs within Microsoft Sentinel, including how to bulk update tables via Cloud Shell.