☆67Jan 20, 2026Updated last month
Alternatives and similar repositories for sentinel
Users that are interested in sentinel are comparing it to the libraries listed below
Sorting:
- Sentinel Analytics Rule converter PowerShell module☆67Feb 24, 2026Updated last week
- Sentinel Threat Intelligence Upload Toolkit☆18Jul 15, 2024Updated last year
- Utilities for Microsoft Sentinel☆20Dec 7, 2025Updated 3 months ago
- Sigma Queries turned into KQL for Defender using pysigma☆12Jun 20, 2024Updated last year
- An automation framework for deploying Microsoft Sentinel environments using pipelines. This project combines infrastructure-as-code (Bice…☆22Jul 31, 2025Updated 7 months ago
- Create a Word document showing your Sentinel configuration☆14Nov 7, 2023Updated 2 years ago
- Azure OpenAI Playbook created for Microsoft Sentinel☆13May 2, 2024Updated last year
- In this repository you may find KQL (Kusto Query Language) queries and Watchlist schemes for data sources related to Microsoft Sentinel (…☆134Dec 18, 2025Updated 2 months ago
- Automated security investigation tool using Microsoft MCP Servers, GitHub Copilot, Python Modules and custom copilot-instructions.☆48Updated this week
- Export Microsoft Sentinel artifacts like Analytical Rules, Hunting Queries, Workbooks in order to support new feature Repositories CI/CD …☆59Sep 15, 2022Updated 3 years ago
- KQL Detections for Microsoft Sentinel and Microsoft 365 Defender☆21Nov 15, 2024Updated last year
- ☆30May 1, 2025Updated 10 months ago
- ☆55Jan 19, 2026Updated last month
- KQL queries for cyber defense and for solving daily issues☆55Jul 28, 2025Updated 7 months ago
- AzLogDcrIngestPS - Unleashing the power of Log Ingestion API with Azure LogAnalytics custom table v2, Azure Data Collection Rules and Azu…☆33Jan 26, 2025Updated last year
- A collection of Microsoft Sentinel workbooks and analytics rules.☆111Feb 8, 2024Updated 2 years ago
- Cyber Defence related kusto queries for use in Azure Sentinel and Defender advanced hunting☆68Dec 7, 2025Updated 3 months ago
- The Microsoft Sentinel Triage AssistanT (STAT) enables easy to create incident triage automation in Microsoft Sentinel☆277Jan 2, 2026Updated 2 months ago
- Programming Microsoft Sentinel book☆25Dec 13, 2023Updated 2 years ago
- This project contains a **test executable** specifically designed to trigger incidents in **Microsoft Defender for Endpoint (MDE)**. It…☆14Jul 20, 2025Updated 7 months ago
- Conditional Access baseline for March 2025☆12Mar 4, 2025Updated last year
- Enable the automatic deployment of Azure Sentinel using code☆118May 3, 2022Updated 3 years ago
- The purpose of this repository is to share KQL queries to help identify security misconfigurations, hunt for specific patterns, or detect…☆79Feb 10, 2026Updated 3 weeks ago
- KQL Queries. Microsoft Defender, Microsoft Sentinel☆196Feb 23, 2026Updated last week
- ☆12Feb 9, 2025Updated last year
- ☆45Apr 10, 2024Updated last year
- The CIA Compliance Manager is an application that helps organizations assess and manage the availability, integrity, and confidentiality …☆15Updated this week
- Repository to publish sample use cases, templates, solutions, automations for Microsoft Defender Threat Intelligence (MDTI) product☆80Sep 9, 2024Updated last year
- Azure Sentinel KQL☆472Jul 28, 2025Updated 7 months ago
- ☆56Updated this week
- Automate Reporting of Defender for Cloud recommendations & Role Assignments with 35 different views☆12Jan 31, 2023Updated 3 years ago
- The idea is simply to save some quick notes that will make it easier for Splunk users to leverage KQL (Kusto), especially giving projects…☆44Nov 7, 2020Updated 5 years ago
- ☆402Mar 1, 2026Updated last week
- ☆11Mar 16, 2023Updated 2 years ago
- ☆12Jul 15, 2022Updated 3 years ago
- various tools for Microsoft Sentinel☆32Jun 26, 2025Updated 8 months ago
- This project provides a small console tool that enables you to backup your Azure DevOps Repos (Git based) using the API for Azure DevOps.…☆35Jun 21, 2025Updated 8 months ago
- Docs and samples for privileged identity and access management in Microsoft Azure and Microsoft Entra.☆185Feb 19, 2026Updated 2 weeks ago
- Integration tools for TheHive and Azure Sentinel☆13Sep 23, 2020Updated 5 years ago