Using Sysinternals Sysmon in Azure Sentinel

Azure Sentinel is a SIEM solution offered from Microsoft to see and stop threats before they cause harm. Olaf Hartong tested to use sysinternals tools Sysmon in Azure Sentinel.


Advertising

An introduction into Azure Sentinel may be found at this Microsoft site. According to Microsoft, Azure Sentinel is your birds-eye view across the enterprise. Olaf Hartong played a bit with this new feature. Within the tweet below he announced his blog post about using Sysmon in Azure Sentinel – maybe it's helpful to someone.


Cookies helps to fund this blog: Cookie settings
Advertising


This entry was posted in Security and tagged . Bookmark the permalink.

Leave a Reply

Your email address will not be published. Required fields are marked *