Тёмный
Concepts Work
Concepts Work
Concepts Work
Подписаться
We believe conceptual knowledge is the most important part to start learning something new. The information mentioned in the documents may vary as per the updates released by different service providers, but we will keep on updating the information to provide the best documentation for conceptual understanding.
For any queries please feel free to reach us at learnconceptswork@gmail.com
Please subscribe if you have learnt something new and we will keep on uploading new videos.
Microsoft Sentinel Windows Logs Ingestion
17:13
2 месяца назад
Setup Microsoft Sentinel | Tutorial
15:15
3 месяца назад
Microsoft Sentinel Enabling Data Connectors
7:18
3 месяца назад
SIEM Solution | Data Normalization and Indexing
12:05
5 месяцев назад
Комментарии
@sekharg16
@sekharg16 9 часов назад
Preparing for AZ-104. Of all the concepts - the most confusing is Monitors & Logs. Glad that I found this video series! Thank you!!
@cornelliouspollard273
@cornelliouspollard273 2 дня назад
What software are using to make this presentation?
@miketony2069
@miketony2069 3 дня назад
Great description of the differences between Azure and intune devices
@dkumar4229
@dkumar4229 3 дня назад
great content ..thanks for the video
@motorhead1791
@motorhead1791 4 дня назад
Hi, I need your support. I am facing one issue that logs coming from network devices as CEF and syslog are directly coming on the OS drive, whereas I want that they should come on a additional data drive. Second question can we separate this ingestion of CEF and sylog in log forwarder VM only ? Please support
@sarathreddy1275
@sarathreddy1275 6 дней назад
can you create vedios for playbook in sentinel which will give exposure for automation
@dikeshshrestha2694
@dikeshshrestha2694 7 дней назад
Hi sir, Waiting for automation and playbooks topics. When that will be released? Please let us know.
@akshayvicky8836
@akshayvicky8836 7 дней назад
Can we expect more videos on Sentinel???
@sarravallaud4381
@sarravallaud4381 8 дней назад
HEllo, for those who wants to migrate the incident/ Alert management to management used what on premise? Otherwise sentinel replaces which tools plz?
@thourayasboui376
@thourayasboui376 8 дней назад
A question plz: if I understand well sentinel is both for siem and soar. Do you think that customer may use sentinel for siem and another tool for soar?? For which reason they do that and which kind of tools they may use for soar for example ? Thanks
@LuisNOJ3
@LuisNOJ3 9 дней назад
Amazingly well explained, so thankful that you took the time to put this out. Congratulations on your work and commitment.
@adimurthy5576
@adimurthy5576 9 дней назад
Hello sir, How i can reach out you
@arunsahanigmailcom
@arunsahanigmailcom 10 дней назад
I mean no words, The way you explained this is awesome. Please can you share the complete series on LAW and DCR.
@familyTV-of9zg
@familyTV-of9zg 14 дней назад
great work ..
@Sergio-Here-In-Community
@Sergio-Here-In-Community 18 дней назад
Terrific Video... I love how you present complex Microsoft technology and very easy sequencial steps.. thanks you very much for create all that material for the community. 😁😁😁😁😁
@sidhu3496
@sidhu3496 19 дней назад
Your videos are very helpful to understand easily. Could you pls make a video on how to integrate monitoring with service now to create tickets and also how azure services can integrate with splunk or checkmk to monitor the azure infra
@sunilchander8885
@sunilchander8885 20 дней назад
really nice one
@ArunRaj-sf6to
@ArunRaj-sf6to 21 день назад
Is there any way to filter the logs by using dcr pipeline before it sends to sentinel. as per the refferance we need to validate the logs and then to remove it which means logs will be ingested to workspace and in production deployment the size of the logs will be enourmous. How ever if the logs from 2 differnt types of firewall is coming under one table and using one dcr then at that time we would need to specify the device vendor as well to get it filterout right.
@TobyCastellanos-z8v
@TobyCastellanos-z8v 22 дня назад
Al Mill
@atulhonnangi828
@atulhonnangi828 22 дня назад
I see this was uploaded 3 years ago, but today also this video is super helpful in terms of explanation and examples you provided.
@TheFatlifter285
@TheFatlifter285 23 дня назад
Thank you for the information. It was a good informative video.
@adimurthy5576
@adimurthy5576 25 дней назад
Please do how to create playbooks in sentinel
@vivekpanchal9723
@vivekpanchal9723 27 дней назад
Can I send Prometheus metrics of an application running on my azure VM to the monitor workspace?
@supreetmonga
@supreetmonga 28 дней назад
Do you have any Video which would show Real life Examples of Ms Sentinel ?
@akhan3682
@akhan3682 Месяц назад
you, sir, are a scholar and a genius - made it easy peasy. Much thanks!
@ConceptsWork
@ConceptsWork 28 дней назад
Glad it helped!
@dikeshshrestha2694
@dikeshshrestha2694 Месяц назад
Thank you for giving good concepts. Waiting for other types of Analytics rules in Sentinel like Fusion, Anamoly.... Also waiting for playbooks, workbooks...
@simple-security
@simple-security Месяц назад
26:37: table transforms don't work.
@ConceptsWork
@ConceptsWork Месяц назад
Watch this Azure Monitor | Log Analytics Workspace | Table Transformation ru-vid.com/video/%D0%B2%D0%B8%D0%B4%D0%B5%D0%BE-ckwOXLysl0E.html
@tahayasingunduz2779
@tahayasingunduz2779 Месяц назад
I really haven't seen anyone explain such a monotonous subject as clean, concise, beautiful and humorous as you, my friend. I really congratulate you. you made a great narration.
@tahayasingunduz2779
@tahayasingunduz2779 Месяц назад
Thanks from Tukey!
@harargey9126
@harargey9126 Месяц назад
Fantastic and well-presented series about Log analytics and associated subjects. I think Microsoft should hire you to teach people with their product. The best videos ever, without complicating the subject matter. a million Kudos !!!!!!!!!!!!!!!
@ganeshdaskan4967
@ganeshdaskan4967 Месяц назад
Perfect !!!!!
@TaranjeetMalik
@TaranjeetMalik Месяц назад
Hi Thanks for creating such a fabulous content - your videos and really helpful. They're crystal clear and easy to understand. Quick question: Towards the end of this video, you mention that next video will be "Configuring Advanced Settings for MDATP on Linux". However, I'm unable to locate that on your channel. Any chance you can share the link of that video here? Thanks
@umeshmishra9527
@umeshmishra9527 Месяц назад
Great work
@sachin-tr4nc
@sachin-tr4nc Месяц назад
Hi sir I Request you kindly cover these Below Topics in Microsoft Sentinel course Hunting TTPs of APT Groups & mapping them with MITRE ATT&CK Framework creating Heat Maps for the reference to MITRE ATT&CK Framework for the Detection coverage Hunting Live APT Actors & Identify the potential IOCs How to Mitigate security Breaches to proactively Hunting the Threat Actors specially Ransomware How to Create Standard Operation Procedure(SOP) Documents as per Security Incident Thanks in Advance & Have a Nice day.
@ConceptsWork
@ConceptsWork Месяц назад
It will there very soon !!
@sachin-tr4nc
@sachin-tr4nc Месяц назад
Thanks for confirmation sir😊
@sachin-tr4nc
@sachin-tr4nc Месяц назад
Hi sir I Request you kindly cover these Below Topics in Microsoft Sentinel course Hunting TTPs of APT Groups & mapping them with MITRE ATT&CK Framework creating Heat Maps for the reference to MITRE ATT&CK Framework for the Detection coverage Hunting Live APT Actors & Identify the potential IOCs How to Mitigate security Breaches to proactively Hunting the Threat Actors specially Ransomware How to Create Standard Operation Procedure(SOP) Documents as per Security Incident Thanks in Advance & Have a Nice Day.
@sachin-tr4nc
@sachin-tr4nc Месяц назад
Hi sir Appreciate your knowledge & Command on Microsoft Sentinel, Hard work Making these videos I dont know why your channel Not Got Highlighted In RU-vid for your Videos(I belive you have made some videos Private/memebers Only) Thats the Reason your Videos Are Not Reaching Many people around Global, So i Request you to make change by removing private options, so that Many students get know about your channel & your wonderful content, even views automatically get generated & many more students subscribe your channel, That was my opinion as your student Thanks in advance & Have a great year ahead
@ssarkar5266
@ssarkar5266 Месяц назад
Could you share interview questions like real time for 5 yr work exp candidates?
@Toad31B
@Toad31B Месяц назад
tysm
@Tech-ub8dd
@Tech-ub8dd Месяц назад
i have a question - these logs that are retained up to 7 years , are they retained directly into Log analytics workspace or somewhere else ? Very good video!
@Tech-ub8dd
@Tech-ub8dd Месяц назад
great video, i like that you went in and showed it all without skipping some of the options/configurations
@ConceptsWork
@ConceptsWork Месяц назад
I appreciate that!
@adimurthy5576
@adimurthy5576 Месяц назад
Hello sir your vodeos are very helpfull and do one video on ddos dos phishing analysis Thank you
@ConceptsWork
@ConceptsWork Месяц назад
Noted
@albertomejiacordero9901
@albertomejiacordero9901 Месяц назад
Just want to say thank you for your awesome work on this subject. Thank you
@ConceptsWork
@ConceptsWork Месяц назад
My pleasure!
@albertomejiacordero9901
@albertomejiacordero9901 Месяц назад
The new claim: Department will not show on the Token Claims page if its not populated in the User Profile.
@monitorinterfaces524
@monitorinterfaces524 Месяц назад
Hey @ 11:00 what is the difference between storing and processing in this context ? what does it means data processed in only two location ? does this means, part of the data, let's say the response of KQL queries or graphs will be in US or Europe even if the data was stored else where ?
@umeshhande5759
@umeshhande5759 Месяц назад
After this series - Looking for dedicated playlist on Logic apps and automation for Security Operation Center use cases 🙏
@adimurthy5576
@adimurthy5576 Месяц назад
Hi sir Your videos are very helpfull please do videos about DDos dos and phishing analysis complete videos Thank you
@SivakumarSabbana
@SivakumarSabbana Месяц назад
Excellent, Thankyou so much. Can you please make a video on migrating from MMA to AMA.
@Workshopcoaching
@Workshopcoaching Месяц назад
please dont talk and use the mouse at the same time its insane
@farooquem100
@farooquem100 Месяц назад
The way he explains each and every technical aspect of technology is really exceptional. I really appreciate your time and efforts you put to educate all of us. Thank you once again.
@ConceptsWork
@ConceptsWork Месяц назад
Glad it helped!