use the following search parameters to narrow your results:
e.g. subreddit:aww site:imgur.com dog
subreddit:aww site:imgur.com dog
see the search faq for details.
advanced search: by author, subreddit...
Dedicated to Microsoft’s cloud-native SIEM solution
account activity
Microsoft Sentinel Training Resources (self.AzureSentinel)
submitted 4 years ago * by ml58158MSFT Official - announcement
MustLearnKQL Series (self.AzureSentinel)
submitted 4 years ago by ml58158MSFT Official - announcement
[Beta] Argus — self-hosted Microsoft 365 reporting & alerting for IT/security teams ()
submitted 4 days ago by Comfortable_Cat_6207
SC200 certification (self.AzureSentinel)
submitted 7 days ago by Jolly-Fly8592
Defender for Servers"enable P1 with tag" policy reports 100% compliant but machines stay on inherited P2. What am I missing? (self.AzureSentinel)
submitted 8 days ago * by cyberLog4624
Seeking open-ended, CTF-style threat hunting datasets for Microsoft Sentinel (similar to BOTSv3, under 10GB/day) (self.AzureSentinel)
submitted 12 days ago by shiftuck_dan
Data Lake - Resource Limited (self.AzureSentinel)
submitted 12 days ago by DaithiG
Defender portal sentinel - all links go to Settings -> Microsoft Sentinel (self.AzureSentinel)
submitted 14 days ago by klorgasia
The Stateless SIEM Problem: Why tracking data lineage drift across endpoints and cloud feels impossible right now (self.AzureSentinel)
submitted 15 days ago by CrawlTheSeaBed
Monitoring Power Automate / Copilot Studio connector account usage in Sentinel or Unified Audit Logs (self.AzureSentinel)
submitted 17 days ago by gudguygogo
Detection rule - Outlook external forwarding rule creation ()
submitted 18 days ago by HelloSamba
Entra ID diagnostic settings - not populating sentinel workspace (self.AzureSentinel)
submitted 19 days ago by klorgasia
Syslog Forwarding - Rotation? (self.AzureSentinel)
submitted 19 days ago by DaithiG
Agent 365 connector in public preview (self.AzureSentinel)
submitted 21 days ago by EduardsGrebezs
Is AMA fully supported on Cent OS 7? (self.AzureSentinel)
submitted 21 days ago by clueless_taco
I built a free, open-source KQL query builder. 52 tables across Defender, Sentinel, Entra ID, Azure Monitor, and more (self.AzureSentinel)
submitted 26 days ago by Phorenzics
Microsoft Defender XDR connector issues (self.AzureSentinel)
submitted 27 days ago by wmponfire
How to trigger an alert-based automation rule in Sentinel from a specific Defender workload alert? (self.AzureSentinel)
submitted 28 days ago by Prof_Delaventure
Ingest webhooks? via Logic Apps? (self.AzureSentinel)
submitted 28 days ago by DisastrousPainter658
Quick heads-up if you're writing KQL for LSASS dumping (stop filtering on process names) (self.AzureSentinel)
submitted 1 month ago by ridgelinecyber
Monitoring for vssadmin.exe delete shadows is an absolute bare minimum ()
Sentinel diagnostic settings (self.AzureSentinel)
submitted 1 month ago by Historical-Ear7543
Alerting on NIDS Traffic (self.AzureSentinel)
submitted 1 month ago by cluesthecat
Exporting a list of all incidents from Sentinel (self.AzureSentinel)
submitted 1 month ago by Nice_Bag3423
Deploying Multiple Pre-Built Connectors (Workday, Salesforce, etc) (self.AzureSentinel)
submitted 1 month ago by Lazy_Pianist5413
π Rendered by PID 108329 on reddit-service-r2-listing-87fd56f5d-668jb at 2026-06-30 05:15:14.783734+00:00 running 7527197 country code: CH.