Maximizing Microsoft Sentinel ROI with VirtualMetric DataStream – Part 2
Microsoft Sentinel is an extremely powerful platform—but at scale, Windows telemetry (especially Security events) can quickly become one of the highest cost and noise drivers
Microsoft Sentinel is an extremely powerful platform—but at scale, Windows telemetry (especially Security events) can quickly become one of the highest cost and noise drivers
Updated – 17/06/2026 – Microsoft has released native Split and Filter Transformations in Microsoft Sentinel, enabling fine-grained data routing between the Analytics and data lake
I am very happy and grateful to share that I’ve successfully renewed my Microsoft Certified Trainer (MCT) status for another year, marking my sixth consecutive
Microsoft Sentinel has evolved from a cloud-native SIEM into a modern security data lake platform that enables organizations to ingest, retain, and analyze massive volumes
Enterprise Microsoft Sentinel deployments often require selective log replication between workspaces—from Production to Non-Production for testing, from regional instances to centralized Security Operations Centers (SOCs),
Microsoft Sentinel has become a leading cloud SIEM/XDR/SOAR platform, but organizations often struggle to get full value from it. High-volume security telemetry can drive up
This article will demonstrate how to enable and configure Diagnostic logging from all storage services within the Azure Storage Account – Blob, Queue, Table, and
Azure Storage has evolved rapidly, and I’m excited to announce that my Azure Storage Essential Training course on LinkedIn Learning has been fully updated (released
Updated – 16/02/2026 – Microsoft announced Microsoft Sentinel’s CCF Push Feature. The push feature enables real-time, high-volume delivery of security data directly into Sentinel with
Modern SIEM and platform solutions like Microsoft Sentinel can ingest logs from virtually any source, including custom text and JSON logs from network appliances and