Interesting... Very in depth explanation. Love the concepts you described, which made understanding Azure Sentinel as a whole, a lot easier. Btw, how are you writing back words so easily? Is this like a mirror trick?
Glad it was helpful and thank you for sharing! In this video we are using a light board and actually writing normal, the camera is reflecting the video so it looks like a mirror!
Thank you so much for this video, it was very helpful. However, I tried to search your RU-vid channel for a follow up video but couldn't find any. If there are follow up videos, could you please help navigate me through?
I need some pointer Could you help me on these two questions? Q.1) How to get raw payload of incident related events using KQL? Q.2) How to get volume of day using API? I am new to Sentinel Thank You
You're very welcome! 1) this document should provide the information being asked about: identityandsecuritydotcom.files.wordpress.com/2020/04/kql_internals_2020.pdf 2) this document should provide the high level overview of the REST API actions available for use with Azure Sentinel: docs.microsoft.com/en-us/rest/api/securityinsights/
Thank you! I'm glad you're enjoying this teaching style. Be sure to check out Adam's "What is Azure?" course on our channel for more videos just like this one!
There is a connector that will allow you to import the Cloud App Security data into Azure Sentinel, you can read all about it here: docs.microsoft.com/en-us/azure/sentinel/connect-cloud-app-security
Glad you enjoyed the video! All Azure services are charged based on a resource consumption model, essentially "pay as you consume". Having said that some services are setup to provide a free trial period before you are charged, it just depends on what Microsoft's current offerings are around that service. The best way to know for sure is to check the Microsoft Azure website for the service and get the most up to date pricing information. You can find the Azure Sentinel pricing here: azure.microsoft.com/en-us/pricing/details/azure-sentinel/