The Office 365 activity log connector provides insight into ongoing O365 user activities. By configuring Office 365 Connector in Azure Sentinel you will get details of operations such as file downloads, access requests sent, changes to group events, set-Mailbox and details of the user who performed the actions. This information will be visible in Azure Sentinel Dashboards […]
Author: Emily Young
Azure Sentinel SIEM Architecture
Azure Sentinel cloud SIEM architecture vs. traditional SIEM platforms (based on SANS Reference SIEM Architecture). It provides a high-level mapping of specific Azure Sentinel functions to generic next-gen SIEM functions.