Integrating Defender EASM with Microsoft Sentinel Guide
Microsoft Defender External Attack Surface Management (EASM) provides organizations with a comprehensive view of their digital attack surfaces. It discovers known and unknown resources, from web pages to IP addresses…
Enable Sentinel UEBA Activity Templates at Scale (In Bulk)
Once you have enabled Microsoft Sentinel UEBA (User and Entity Behavior Analytics) in your environment, you can customize the entity page and change the activities UEBA tracks. In addition to…
MS-102 Exam Study Guide: Microsoft 365 Administrator Expert
Updated — 16/09/2024 — The exam guide below shows the changes to be implemented starting July 15, 2024. It has been updated to reflect the new objectives and exam topic weights that Microsoft Learning…
Deep Dive into Microsoft Sentinel UEBA (User and Entity Behavior Analytics)
Updated — 04/03/2026 — Microsoft has recently announced an exciting expansion of User and Entity Behavior Analytics (UEBA) in Sentinel called the Behaviors Layer. The Behaviors Layer is a new…
Rotate Microsoft Sentinel Repositories Connections Effectively
Updated — 15/01/2025 — Microsoft announced Bicep Support in Microsoft Sentinel Repositories. Bicep support for Microsoft Sentinel offers streamlined configuration management with intuitive syntax, improved collaboration through version control and…
Azure Mandatory MFA Planning Guide – Boost Security
Updated—30/09/2025 — Starting October 1st, 2025, Microsoft will begin MFA enforcement gradually for accounts that sign in to Azure CLI, Azure PowerShell, Azure mobile app, IaC tools (non-Service Principal-based), and…
Demystifying Microsoft Sentinel Multi-Tier Logging
Updated — 01/04/2025 — Starting 1 May 2025, Microsoft will begin billing for queries and search jobs on logs ingested into the Auxiliary Logs plan. Querying Auxiliary Logs will be…
Extract Custom Details from Microsoft Sentinel into Logic App
When a security alert is triggered, the information provided in the alert is vital for the security analyst to conduct an investigation. Therefore, the alert must contain essential details. Including…
Azure Savings Plans vs Reservations: Choosing the Best Cloud Computing Option
Azure Savings Plans and Reservations offer distinct approaches to managing cloud costs effectively. Each option caters to different workload patterns, providing significant savings and resource optimization opportunities. In this article,…
Comprehensive Guide to Convert OST to PST
Microsoft Outlook maintains mailbox contents inside an Outlook data file. Based on the email account type (IMAP/MAPI/POP), Outlook may build an OST or Personal Storage Table (PST) file to keep…
Exam SC-200 Microsoft Security Operations Analyst (Video), 2nd Edition
DISCLOSURE: This post may contain affiliate links, meaning we receive a commission when you click the links and make a purchase. Thank you for your support! Updated – 31/07/2026 –…
CISO’s Guide: Using Copilot for Security Insights & Guidance
As a prominent organization’s Chief Information Security Officer (CISO), you safeguard sensitive data and mitigate cyber threats. To address these challenges effectively, you implemented Copilot for Security, an advanced AI…












