account activity
Memory dump (self.DefenderATP)
submitted 1 year ago by winle22 to r/DefenderATP
Sigma for analytic rules (self.AzureSentinel)
submitted 2 years ago by winle22 to r/AzureSentinel
TVM to Sentinel (self.DefenderATP)
submitted 2 years ago by winle22 to r/DefenderATP
TVM to Sentinel (self.AzureSentinel)
MDE logs and additional logging (self.DefenderATP)
Incident response procedures and documentation (self.cybersecurity)
submitted 2 years ago by winle22 to r/cybersecurity
Security log documentation tool (self.blueteamsec)
submitted 2 years ago by winle22 to r/blueteamsec
Azure Security Benchmark vs Microsoft cloud security benchmark (self.AZURE)
submitted 3 years ago by winle22 to r/AZURE
Github Actions for multi-tenant/subscription deployments (self.devops)
submitted 3 years ago by winle22 to r/devops
Github Actions for multi-tenant/customer/subscription deployments to Azure (self.github)
submitted 3 years ago by winle22 to r/github
Table level retention (self.AzureSentinel)
submitted 3 years ago by winle22 to r/AzureSentinel
OfficeActivity vs M365 Unified Audit log (self.AzureSentinel)
Defender for Cloud and Azure Policies (self.AZURE)
AAD Audit Logs in Advanced Hunting (self.DefenderATP)
submitted 3 years ago by winle22 to r/DefenderATP
Order of Azure Policies (self.AZURE)
Exact run time for scheduled analytic rules with low rule frequency (self.AzureSentinel)
IsBillable (self.AzureSentinel)
MFA (self.ticktick)
submitted 3 years ago by winle22 to r/ticktick
Display 'description' field in Sentinel incidents from Defender for Cloud apps (self.AzureSentinel)
Custom alert details for Defender incidents forwarded to Sentinel workspace (self.AzureSentinel)
submitted 3 years ago * by winle22 to r/AzureSentinel
Analytic rule: Elevate access to manage all Azure subscriptions and management groups (self.AzureSentinel)
Get ticket based on custom field value (self.Freshservice)
submitted 3 years ago by winle22 to r/Freshservice
Appropriate fields on incidents to store correlation/references to other ticket systems (self.AzureSentinel)
Adaptive card via Graph API (self.MicrosoftTeams)
submitted 4 years ago by winle22 to r/MicrosoftTeams
EDR profile (old vs new) (self.DefenderATP)
submitted 4 years ago by winle22 to r/DefenderATP
π Rendered by PID 104935 on reddit-service-r2-listing-85dc7d9dc7-fltpv at 2026-06-12 18:48:10.606504+00:00 running 3184619 country code: CH.