Azure Sentinel

Cross Analytics queries with a multitenant Azure Sentinel setup

I was currently in a project where we needed to have a multi-tenant Microsoft Sentinel environment. We had multiple Sentinel / Log Analytics workspaces where we needed to do cross queries to look at the datasets which is typically the case with MSSP environments. When it comes to using Microsoft Sentinel as a multi-tenant solution such as …

Cross Analytics queries with a multitenant Azure Sentinel setup Read More »

Automation Azure Sentinel and Terraform

In a previous blog post (https://msandbu.org/automating-azure-sentinel-deployment-using-terraform-and-powershell/)  I wrote how about you can use Terraform to automate the setup of Azure Sentinel and Log Analytics. The issue back then, was that you couldn’t automate Sentinel Analytics rules which you still needed to maintain using a third-party PowerShell module. NOTE: I’m working on publishing a Terraform module …

Automation Azure Sentinel and Terraform Read More »

Scroll to Top