Loading…
Thursday September 19, 2024 16:40 - 17:40 CEST
One of the main reasons to decide to use Microsoft Sentinel, is the ability to connect additional log sources and expand your security coverage.
With literally hundreds of content hub solutions available and in many companies a nearly matching amount of data sources available, it's sometimes hard to decide on which to focus first.

In this session I will share my experience and best practices to prioritize and add new data sources, based on the actual needs of the security operations teams.
What are good ingestion configurations to get the alerts you want without having to spent a fortune?
Speakers
avatar for Fabian Bader

Fabian Bader

Cyber Security Architect, glueckkanja AG
Fabian Bader is a Cyber Security Architect and Microsoft MVP from Germany. He focuses on security and cloud solutions and works mainly with Microsoft technologies.From Azure cloud to on-premises Active Directory, he likes to automate stuff with PowerShell.Besides being a speaker at... Read More →
Thursday September 19, 2024 16:40 - 17:40 CEST
Clubraum 2
Log in to leave feedback.

Log in to save this to your schedule, view media, leave feedback and see who's attending!

Share Modal

Share this link via

Or copy link