Professional Documents
Culture Documents
Technical Overview: Azure Sentinel Level 400
Technical Overview: Azure Sentinel Level 400
Module 1
Technical Overview
• In this module you will learn
Overview What Azure Sentinel is, its key
advantages and core features.
Pre-
• None. Start here.
requisites
A cloud SIEM For the Cloud And for on premises
Security
Operations Team
• Auto-scales
• Easy collection from cloud sources
• Avoid sending cloud telemetry
downstream
A SIEM native • Key log sources are free
to the cloud
But there is more!
▪ $1B
▪ 3500+
▪ Trillions of
Collect Detect Investigate Respond
Azure Sentinel
Data store
Automation
User interface
Rules
Machine learning
Search & investigation
On Premises
CEF/Syslog
connector
(Optional)
Collector Custom
Proxy Connectors
AzureSentinel@microsoft.com
Tech Blogs