Listen "Microsoft Sentinel with Sarah Young"
Episode Synopsis
Are you using Microsoft Sentinel? Richard talks to Cloud Security Advocate Sarah Young about Sentinel, Microsoft's Security Information and Event Management (SIEM) solution. Sarah talks about the role of the SIEM in creating a common place for all security-related data to arrive. She mentions some of the many tools in the Microsoft suite to feed into Sentinel - Defender for Endpoints, Identity, and Cloud as examples. Specialized analysis tools send summaries to Sentinel, but Sentinel can also process raw logs as well - make sure you need the data because billing for Sentinel is connected to the number of ingress sources. There's a lot to learn, but also a lot of great documentation and information to work from. Check the show notes for links!Links:Microsoft SentinelArcSightDefender Security AlertsDefender for EndpointDefender for IdentityMicrosoft Digital Defense Report 2022Defender for CloudWhat is CSPM?Security Baselines BlogMicrosoft Security CopilotRecorded April 6, 2023
More episodes of the podcast RunAs Radio
Azure Resiliency with Chris Ayers
12/11/2025
AI for DBAs with Grant Fritchey
29/10/2025
The End of NTLM with Steve Syfuhs
15/10/2025
Managing for Failure with Amy Norris
08/10/2025
HaveIBeenPwned with Troy Hunt
01/10/2025
Managing Vendor Incidents with Mandi Walls
24/09/2025
Certificate Automation with Todd Gardner
17/09/2025
Training for AI with Stephanie Donahue
10/09/2025
ZARZA We are Zarza, the prestigious firm behind major projects in information technology.