JonCyberGuy / SIEM-HomeLab
A walkthrough of creating and using the Azure environment and Microsoft Sentinel to track attacks and plot attacks on a live map.
☆16Updated last year
Alternatives and similar repositories for SIEM-HomeLab:
Users that are interested in SIEM-HomeLab are comparing it to the libraries listed below
- Solution to deploy a Sentinel playground demo environment☆55Updated last year
- ☆15Updated last year
- ☆54Updated 6 months ago
- Microsoft Entra ID App Audit Solution (AADAppAudit)☆80Updated 4 months ago
- Automation around Entra ID☆33Updated last month
- Extensible Azure Security Tool - Documentation☆81Updated last year
- ☆30Updated 2 months ago
- ☆30Updated 2 months ago
- KQL for Azure Resource Manager and AppID search☆23Updated 5 months ago
- Sentinel Recon Tools Workbook☆13Updated 2 years ago
- Create a Word document showing your Sentinel configuration☆12Updated last year
- Azure AD Security controls check.☆14Updated last year
- Everything you need to prepare for the Microsoft 365 Certified: Endpoint Administrator Associate!☆23Updated last year
- Links and guidance related to the return on mitigation report in the Microsoft Digital Defense Report☆27Updated last year
- Assess Azure Security State☆36Updated 11 months ago
- Collection of Microsoft Identity Threat Detection and Response resources.☆36Updated 2 weeks ago
- KQL queries for cyber defense and for solving daily issues☆46Updated 3 months ago
- Workbooks for Azure Sentinel☆57Updated last year
- ☆30Updated last year
- Everything about Microsoft Cloud Security!☆52Updated 6 months ago
- Simple GUI for Microsoft Defender for Endpoint API machine actions in PowerShell.☆31Updated 2 years ago
- Microsoft Sentinel related content☆34Updated last year
- KQL example queries for working in Azure☆32Updated 5 months ago
- A collection of Microsoft Sentinel workbooks and analytics rules.☆104Updated 11 months ago
- A list of Entra ID (Azure AD) Audit event names and the corresponding Microsoft Graph Request Uri☆27Updated 3 months ago
- MDE Quickstart is a battle-tested MDE policy set designed to be restored with Intune Backup & Restore☆66Updated 2 years ago
- ☆15Updated 3 years ago
- ☆26Updated last year
- Microsoft Sentinel, Defender for Endpoint - KQL Detection Packs☆52Updated last year