No video

Azure Sentinel Webinar: The Information Model: Understanding Normalization in Azure Sentinel

  Рет қаралды 7,625

Microsoft Security

Microsoft Security

Күн бұрын

Working with multiple data types and sources is a challenge: Understanding different schemas and creating a unique set of analytics rules, workbooks, and hunting queries for each. This webinar will enable you to learn about the Azure Sentinel Information Model (ASIM), which combines schema definitions, parsers, and normalized content to allow source agnostic content and simplify analyst use of the Azure Sentinel’s data.
2:38 - Introduction
4:39 - ASIM Overview
18:09 - Demo
24:51 - Understanding the ASIM Schemas
41:10 - Demo
50:08 - Normalization in Action: Detections and Hunting
53:50 - Q&A/Outro
#MicrosoftSecurity

Пікірлер
The Advanced SIEM Information Model (ASIM): Now Built into Microsoft Sentinel
55:00
Microsoft Security Community
Рет қаралды 5 М.
Introduction to Azure Sentinel. Part 1 - Foundations
54:21
Netrix Global
Рет қаралды 12 М.
Mom's Unique Approach to Teaching Kids Hygiene #shorts
00:16
Fabiosa Stories
Рет қаралды 38 МЛН
Pleased the disabled person! #shorts
00:43
Dimon Markov
Рет қаралды 32 МЛН
Как бесплатно замутить iphone 15 pro max
00:59
ЖЕЛЕЗНЫЙ КОРОЛЬ
Рет қаралды 8 МЛН
Inside Out Babies (Inside Out Animation)
00:21
FASH
Рет қаралды 23 МЛН
Azure Sentinel webinar: Deep-dive on Correlation Rules
1:08:44
Microsoft Security Community
Рет қаралды 11 М.
Azure Sentinel webinar: KQL part 3 of 3 - Optimizing Azure Sentinel KQL queries performance
1:03:12
Azure Sentinel webinar: Cloud & On-Premises architecture
1:29:22
Microsoft Security Community
Рет қаралды 30 М.
Learn the Fundamentals of Microsoft Fabric in 38 minutes
38:00
Learn Microsoft Fabric with Will
Рет қаралды 143 М.
Microsoft Intune From Zero to Hero
39:08
Andy Malone MVP
Рет қаралды 192 М.
What is an API Gateway?
10:19
IBM Technology
Рет қаралды 301 М.
Mom's Unique Approach to Teaching Kids Hygiene #shorts
00:16
Fabiosa Stories
Рет қаралды 38 МЛН