Posted by: kurtsh | August 8, 2023

INFO: Microsoft’s Internal Security on its transition to Microsoft Sentinel

Our Inside Track series recently wrote about Microsoft’s own transition to using Microsoft Sentinel for it’s Enterprise SIEM.

Architecture for the new SIEM solution using Microsoft Sentinel.

We recently implemented Microsoft Sentinel to replace a preexisting, on-premises solution for security information and event management (SIEM). With Microsoft Sentinel, we can ingest and appropriately respond to more than 20 billion cybersecurity events per day.

Microsoft Sentinel supplies cloud-scale SIEM functionality that allows integration with crucial systems, provides accurate and timely response to security threats, and supports the SIEM requirements of our team.

The article goes over the anticipated value add from the new cloud-based solution, the design, architecture & implementation, the resulting experience. There are also links to operational documentation from the Microsoft Security team.

✅ Moving to next-generation SIEM at Microsoft with Microsoft Sentinel: https://www.microsoft.com/insidetrack/blog/moving-to-next-generation-siem-at-microsoft-with-microsoft-azure-sentinel/


Categories