azsec / azure-sentinel-toolsLinks
A collection of scripts and works related to Azure Sentinel
☆41Updated 3 years ago
Alternatives and similar repositories for azure-sentinel-tools
Users that are interested in azure-sentinel-tools are comparing it to the libraries listed below
Sorting:
- ☆30Updated 11 months ago
- Export Microsoft Sentinel artifacts like Analytical Rules, Hunting Queries, Workbooks in order to support new feature Repositories CI/CD …☆59Updated 3 years ago
- Workbooks for Azure Sentinel☆60Updated 2 years ago
- Powershell module for Microsoft Cloud App Security☆85Updated 2 years ago
- ☆60Updated 2 years ago
- Various tools used to monitor and troubleshoot Azure Sentinel data☆30Updated last year
- ☆59Updated last year
- MDE Quickstart is a battle-tested MDE policy set designed to be restored with Intune Backup & Restore☆66Updated 2 years ago
- Solution to deploy a Sentinel playground demo environment☆56Updated 2 years ago
- M365 MDATP Live Response sample scripts☆79Updated 11 months ago
- various tools for Microsoft Sentinel☆31Updated 4 months ago
- PowerShell module for Azure Sentinel☆232Updated 3 years ago
- Evaluating and Reporting on Azure Active Directory/Active Directory Users Security Posture☆29Updated 6 years ago
- Deploying and Managing Azure Sentinel – Ninja style☆32Updated 4 years ago
- ☆35Updated 2 years ago
- Sentinel Analytics Rule converter PowerShell module☆65Updated 9 months ago
- My useful KQL and Azure Monitor workbooks (Public)☆117Updated this week
- Additional resources to improve customer experience with Microsoft Defender for Identity☆114Updated last month
- ☆18Updated 3 years ago
- Microsoft Cloud App Security labs☆14Updated 6 years ago
- Enable the automatic deployment of Azure Sentinel using code☆118Updated 3 years ago
- Advanced Hunting Queries for Microsoft Security Products☆107Updated 2 years ago
- A collection of things I've created or found that I think is useful for Azure Sentinel.☆18Updated 6 months ago
- KQL queries for Advanced Hunting☆176Updated 5 years ago
- PowerShell Module for managing Microsoft Defender Advanced Threat Protection☆73Updated 2 years ago
- Reworked assets for Azure Sentinel using Cisco Umbrella logs as source. Includes logstash config for Cisco Umbrella using Cisco managed A…☆13Updated 5 years ago
- Sample PowerShell module and scripts for managing Azure AD Identity Protection service☆83Updated 3 years ago
- This repository is for public files shared by the Microsoft Information Protection Team☆25Updated 4 years ago
- PowerShell module to manage Azure Active Directory app credentials.☆119Updated last year
- Microsoft Defender Advanced Threat Protection☆47Updated 5 months ago