Effective Approach To Collect Windows Firewall Events to Microsoft Sentinel
The built-in Windows Firewall is a great security feature for the Windows client and server operating systems. While not every organization actively uses Windows Firewall (they may have a third-party…
Update Microsoft Sentinel Workbooks Efficiently at Scale (In Bulk)
Microsoft Sentinel comes with Content Hub, which you can use out-of-the-box to get content value and start on Microsoft Sentinel quickly. Solutions in Microsoft Sentinel Content Hub provide a consolidated…
Integrating Defender EASM with Microsoft Sentinel Guide
Microsoft Defender External Attack Surface Management (EASM) provides organizations with a comprehensive view of their digital attack surfaces. It discovers known and unknown resources, from web pages to IP addresses…
Enable Sentinel UEBA Activity Templates at Scale (In Bulk)
Once you have enabled Microsoft Sentinel UEBA (User and Entity Behavior Analytics) in your environment, you can customize the entity page and change the activities UEBA tracks. In addition to…
MS-102 Exam Study Guide: Microsoft 365 Administrator Expert
Updated – 02/09/2026 – Microsoft is retiring the Exam MS-102: Microsoft 365 Administrator Expert Certification. The certification, related exam, and renewal assessments will all be retired on November 30, 2026. The…
Deep Dive into Microsoft Sentinel UEBA (User and Entity Behavior Analytics)
Updated — 04/03/2026 — Microsoft has recently announced an exciting expansion of User and Entity Behavior Analytics (UEBA) in Sentinel called the Behaviors Layer. The Behaviors Layer is a new…
Rotate Microsoft Sentinel Repositories Connections Effectively
Updated — 15/01/2025 — Microsoft announced Bicep Support in Microsoft Sentinel Repositories. Bicep support for Microsoft Sentinel offers streamlined configuration management with intuitive syntax, improved collaboration through version control and…
Azure Mandatory MFA Planning Guide – Boost Security
Updated—30/09/2025 — Starting October 1st, 2025, Microsoft will begin MFA enforcement gradually for accounts that sign in to Azure CLI, Azure PowerShell, Azure mobile app, IaC tools (non-Service Principal-based), and…
Demystifying Microsoft Sentinel Multi-Tier Logging
Updated — 01/04/2025 — Starting 1 May 2025, Microsoft will begin billing for queries and search jobs on logs ingested into the Auxiliary Logs plan. Querying Auxiliary Logs will be…
Extract Custom Details from Microsoft Sentinel into Logic App
When a security alert is triggered, the information provided in the alert is vital for the security analyst to conduct an investigation. Therefore, the alert must contain essential details. Including…
Azure Savings Plans vs Reservations: Choosing the Best Cloud Computing Option
Azure Savings Plans and Reservations offer distinct approaches to managing cloud costs effectively. Each option caters to different workload patterns, providing significant savings and resource optimization opportunities. In this article,…
Comprehensive Guide to Convert OST to PST
Microsoft Outlook maintains mailbox contents inside an Outlook data file. Based on the email account type (IMAP/MAPI/POP), Outlook may build an OST or Personal Storage Table (PST) file to keep…












