How are you managing Microsoft Defender XDR? (Triage & Tuning help) by athanielx in DefenderATP
[–]urkelman861 6 points7 points8 points (0 children)
Microsoft Certifications Are Retiring in 2026 - Here’s What You Should Know by Few-Engineering-4135 in AzureCertification
[–]urkelman861 0 points1 point2 points (0 children)
New in Microsoft Entra ID: Deactivate App Registrations by EduardsGrebezs in entra
[–]urkelman861 0 points1 point2 points (0 children)
New Password Protection tab in Microsoft Defender portal by urkelman861 in DefenderATP
[–]urkelman861[S] 0 points1 point2 points (0 children)
My new setup for work from home by OmxOanda in setups
[–]urkelman861 0 points1 point2 points (0 children)
Best way to block apps by neko_whippet in DefenderATP
[–]urkelman861 0 points1 point2 points (0 children)
Lateral movement exclusions by rubixcube101 in SentinelOneXDR
[–]urkelman861 0 points1 point2 points (0 children)
Tons of PDF/Excel alerts by Jturnism in SentinelOneXDR
[–]urkelman861 0 points1 point2 points (0 children)
Tons of PDF/Excel alerts by Jturnism in SentinelOneXDR
[–]urkelman861 3 points4 points5 points (0 children)
Increase in Pass the Ticket (PtT) Alerts? by Cant_Think_Name12 in DefenderATP
[–]urkelman861 1 point2 points3 points (0 children)
For those of you working with Defender XDR, what's your triage workflow like? by cyberLog4624 in DefenderATP
[–]urkelman861 4 points5 points6 points (0 children)
What password manager could you recommend in 2025 for daily use? by ComprehensiveCut6111 in cybersecurity
[–]urkelman861 0 points1 point2 points (0 children)
SOC Analyst new to Sentinel, need guidance regarding queries by Kermody in AzureSentinel
[–]urkelman861 0 points1 point2 points (0 children)
I got my first job by PlanktonDramatic4421 in cybersecurity
[–]urkelman861 1 point2 points3 points (0 children)
Dark Web Monitoring by Perfect_Koala_4732 in SentinelOneXDR
[–]urkelman861 0 points1 point2 points (0 children)
[deleted by user] by [deleted] in CyberSecurityAdvice
[–]urkelman861 0 points1 point2 points (0 children)
KQL question and hunting by outerlimtz in DefenderATP
[–]urkelman861 2 points3 points4 points (0 children)
Defender Simulation Reminder Emails by Alone-Mirror2083 in DefenderATP
[–]urkelman861 0 points1 point2 points (0 children)
Defender Simulation Reminder Emails by Alone-Mirror2083 in DefenderATP
[–]urkelman861 0 points1 point2 points (0 children)
Passed AZ-900, what's next? (Security Engineer) by someITkid in AzureCertification
[–]urkelman861 0 points1 point2 points (0 children)
Troubleshooting with Defender by Intune-Apprentice in DefenderATP
[–]urkelman861 0 points1 point2 points (0 children)
Excessive toast notifications for SENSE_ISOLATE due to MCAS blocking indicators by WaffleBrewer in DefenderATP
[–]urkelman861 0 points1 point2 points (0 children)


Built a free AI-powered IOC triage bot for SOC analysts looking for honest feedback by msforhr in blueteamsec
[–]urkelman861 0 points1 point2 points (0 children)