JonCyberGuy / SIEM-HomeLab
A walkthrough of creating and using the Azure environment and Microsoft Sentinel to track attacks and plot attacks on a live map.
☆14Updated last year
Related projects ⓘ
Alternatives and complementary repositories for SIEM-HomeLab
- ☆15Updated last year
- Azure AD Security controls check.☆14Updated last year
- Solution to deploy a Sentinel playground demo environment☆55Updated last year
- Automation around Entra ID☆34Updated 4 months ago
- Microsoft Entra ID App Audit Solution (AADAppAudit)☆80Updated 2 months ago
- KQL for Azure Resource Manager and AppID search☆23Updated 3 months ago
- Extensible Azure Security Tool - Documentation☆81Updated last year
- Create a Word document showing your Sentinel configuration☆10Updated last year
- ☆30Updated last year
- Assess Azure Security State☆36Updated 10 months ago
- ☆53Updated 4 months ago
- A small guide on Unknown/Orphaned SIDs and some PowerShell tools to help you get rid of them.☆15Updated 2 years ago
- A list of Entra ID (Azure AD) Audit event names and the corresponding Microsoft Graph Request Uri☆26Updated last month
- Check you Sentinel environment using Pester infrastructure tests☆26Updated last year
- Defender Resource Hub☆14Updated last month
- ☆40Updated last year
- Microsoft Sentinel related content☆33Updated last year
- Sentinel Logic Apps/Playbooks to automate enrichment, incident analysis and more.☆76Updated 3 months ago
- KQL example queries for working in Azure☆33Updated 3 months ago
- MDE Quickstart is a battle-tested MDE policy set designed to be restored with Intune Backup & Restore☆65Updated last year
- A WDAC configuration repository with the sole intention of enriching MDE☆27Updated last year
- CIS & Azure Security Center Hardening recommendations implemented in PowerShell DSC from Azure Automation☆31Updated 3 years ago
- Everything about Microsoft Cloud Security!☆52Updated 4 months ago
- ☆19Updated last month
- Everything you need to prepare for the Microsoft 365 Certified: Endpoint Administrator Associate!☆23Updated 11 months ago
- ☆29Updated last week
- MS Entra ID Protection Guidance☆20Updated 7 months ago
- ☆44Updated this week
- A curated list of blogs, videos, tutorials, code, tools, scripts, and anything useful to help you learn Azure Policy - by @JesseLoudon☆14Updated 2 years ago
- Defender for Endpoint☆27Updated 4 months ago