Nov 29, 2020
Using KQL to Estimate Log Ingestion Volume In Azure Sentinel
Azure Sentinel pricing model is driven by the amount of data ingested for security analytics that is stored in the related Log Analytics workspace. Given the costs of the cloud resources, it is important to be able to estimate future logs space consumption and consider any budget-related implications. Basing the analysis on the past data, […]
Read More Nov 3, 2020
Using Kusto Query Language (KQL) in Azure Sentinel to calculate IIS session times
User sessions are an important aspect of identifying the behavior of web users. In many cases there is a lot of effort on ensuring that a user spends as much time visiting a website as it increase the chance of consuming the services offered by that particular website, be that advertising material, sales, etc. Onboarding […]
Read More