8
Most read
19
Most read
21
Most read
Microsoft Azure Sentinel
Arnaud Lheureux
Cloud Chief Security Officer
One Commercial Partner
Microsoft APAC
Twitter: @arnaudLheureux
Security Operations Team
Expanding digital estate
Too many
disconnected
products
High volume
of noisy alerts
Security skills
in short supplyLack of
automation
Rising infrastructure
costs and upfront
investment
IT deployment &
maintenance
Sophistication
of threats
Traditional SOC Challenges
Cloud + Artificial Intelligence
Security
Operations Team
Introducing Microsoft Azure Sentinel
Collect
DetectRespond
Limitless cloud speed and scale
Faster threat protection with AI by your side
Bring your Office 365 data for Free
Easy integration with your existing tools
Investigate
Cloud-native SIEM for intelligent security analytics for your entire enterprise
Security data across
your enterprise
Rapidly and automate
protection
Threats with vast
threat intelligence
and AI
Critical incidents
guided by AI
Microsoft Security Advantage
$1B annual investment in cybersecurity
3500+ global security experts
Trillions of diverse signals for
unparalleled intelligence
Limitless cloud speed
and scale
Focus on security, unburden
SecOps from IT tasks
© Microsoft Corporation Azure
No infrastructure setup or maintenance
SIEM Service available in Azure portal
Scale automatically, put no limits
to compute or storage resources
Reduce security and IT costs
No infrastructure costs or
upfront commitment
Only pay for what you use
Bring your Office 365 Data for free
Cloud-native, scalable SIEM
Integrate with existing
tools and data sources
Pre-wired integration with Microsoft solutions
Connectors for many partner solutions
Standard log format support for all sources
Collect security data at cloud scale from all sources across
your enterprise
Proven log platform with more than 10
petabytes of daily ingestion
Microsoft 365
Bring your own insights, machine learning
models, and threat intelligence
Tap into our security community to build
on detections, threat intelligence, and
response automation.
Optimize for your needs
© Microsoft Corporation Azure
Bring your own ML Models
& Threat Intelligence
Security Community
Demo
Overview dashboard and
data collection
© Microsoft Corporation Azure
AI by your side
Correlated
rules
User Entity
Behavior Analysis
integrated with
Microsoft 365
Bring your own
ML models
Pre-built Machine
Learning models
Threat Detection and
Analysis
ML models based on decades of Microsoft
security experience and learnings
Millions of signals filtered to few correlated and
prioritized incidents
Insights based on vast Microsoft threat
intelligence and your own TI
Reduce alert fatigue by up to 90%
Detect threats and analyze security data quickly with AI
Investigate threats with AI and hunt suspicious activities at scale, tapping
into years of cybersecurity work at Microsoft
© Microsoft Corporation Azure
Get prioritized alerts and automated expert
guidance
Visualize the entire attack and its impact
Hunt for suspicious activities using pre-built queries
and Azure Notebooks
Respond rapidly with built-in orchestration and automation
Build automated and
scalable playbooks that
integrate across tools
! Security Products
Ticketing Systems
(ServiceNow)
Additional tools
Demo
Threat detection, investigation
and response
© Microsoft Corporation Azure
Sentinel In a nutshell
© Microsoft Corporation Azure
Microsoft
Services
Analyze & Detect Investigate & Hunt Automate &
Orchestrate Response
Visibility
Data Ingestion Data Repository Data Search
Enrichment
IntegrateCollect
What our partners and early adopters say about Azure Sentinel
© Microsoft Corporation Azure
“Azure Sentinel provides a unique and cloud
centric security incident and event
management solution that is both simple to
deploy and able to manage complex hybrid
customer environments.”
Jeff Dunmall
Executive Vice President of Global
Managed Services
“My team has the upper hand with Azure
Sentinel. I get unbridled capacity, and the built-in
AI and threat intelligence based on Microsoft’s
years of cybersecurity experience really helps my
team focus on keeping our clients secure vs
managing infrastructure and threat feeds”.
Andrew Winkelmann
Global Security Consulting Practice Lead
Take actions today- Get started with Sentinel
Connect
data sources
To learn more, visit
https://aka.ms/AzureSentinel
Start
Microsoft Azure trial
Open Azure Sentinel
preview dashboard
in Azure Portal
Thanks for your attention!
Arnaud Lheureux, CISSP, CCSP
https://aka.ms/arnaud
Twitter : @arnaudLheureux

More Related Content

PDF
Microsoft Azure Sentinel
PPTX
Azure sentinel
PDF
Microsoft Sentinel- a cloud native SIEM & SOAR.pdf
PDF
introduction to Azure Sentinel
PPTX
Azure Sentinel
PPTX
Azure Sentinel Jan 2021 overview deck
PPTX
Microsoft Sentinel Deployment V1.pptx
PDF
Azure Sentinel
Microsoft Azure Sentinel
Azure sentinel
Microsoft Sentinel- a cloud native SIEM & SOAR.pdf
introduction to Azure Sentinel
Azure Sentinel
Azure Sentinel Jan 2021 overview deck
Microsoft Sentinel Deployment V1.pptx
Azure Sentinel

What's hot (20)

PPTX
Azure Sentinel.pptx
PPTX
SEIM-Microsoft Sentinel.pptx
PPTX
Modernize your Security Operations with Azure Sentinel
PPTX
Journey to Azure Sentinel
PPTX
Getting Started with Azure Sentinel
PDF
Microsoft Azure Security Overview
PDF
Azure Sentinel Tips
PPTX
Secure your Access to Cloud Apps using Microsoft Defender for Cloud Apps
PDF
Microsoft 365 Enterprise Security with E5 Overview
PDF
Microsoft Defender and Azure Sentinel
PPTX
Microsoft Defender for Endpoint
PPTX
Azure Security Overview
PDF
Microsoft Zero Trust
PPTX
Azure WAF
PDF
Elastic SIEM (Endpoint Security)
PPTX
Fundamentals of Microsoft 365 Security , Identity and Compliance
PDF
Introduction to MITRE ATT&CK
PPTX
Azure Identity and access management
PDF
Microsoft Office 365 Advanced Threat Protection
PPTX
Azure Security Fundamentals
Azure Sentinel.pptx
SEIM-Microsoft Sentinel.pptx
Modernize your Security Operations with Azure Sentinel
Journey to Azure Sentinel
Getting Started with Azure Sentinel
Microsoft Azure Security Overview
Azure Sentinel Tips
Secure your Access to Cloud Apps using Microsoft Defender for Cloud Apps
Microsoft 365 Enterprise Security with E5 Overview
Microsoft Defender and Azure Sentinel
Microsoft Defender for Endpoint
Azure Security Overview
Microsoft Zero Trust
Azure WAF
Elastic SIEM (Endpoint Security)
Fundamentals of Microsoft 365 Security , Identity and Compliance
Introduction to MITRE ATT&CK
Azure Identity and access management
Microsoft Office 365 Advanced Threat Protection
Azure Security Fundamentals
Ad

Similar to Introduction to Azure Sentinel (20)

PPTX
TechTalksUtah-Sentinel-20191108.pptx
PDF
SBA Security Meetup - Deploying and managing azure sentinel as code by Bojan ...
PPTX
Azure Sentinel with Office 365
PDF
Planning and implementing. Unveiling the advanced technology of Microsoft Azu...
PPTX
Adam ochs sentinel
PPTX
Microsoft Sentinel and Its Components.pptx
PDF
Azure Day Rome Reloaded 2019 - Azure Sentinel: set up automated threat respon...
PPTX
SC-900 Capabilities of Microsoft Security Solutions
PPTX
07 - Defend Against Threats with SIEM Plus XDR Workshop - Microsoft Sentinel ...
PPTX
Cloudbrew 2019 - Threat hunting with the Microsoft Cloud
PDF
L400-P1 Overview.pdf
PDF
Azure Security Overview
PPTX
Remediate and secure your organization with azure sentinel
PDF
Nicholas DiCola | Secure your IT resources with Azure Security Center
PDF
7 Experts on Implementing Azure Sentinel
PDF
do you want to know about what is Microsoft Sentinel.pdf
PPTX
Protect Office 365 with Azure Sentinel
PDF
Azure Security Center
PPTX
Power of the cloud - Introduction to azure security
PPTX
Power of the Cloud - Introduction to Microsoft Azure Security
TechTalksUtah-Sentinel-20191108.pptx
SBA Security Meetup - Deploying and managing azure sentinel as code by Bojan ...
Azure Sentinel with Office 365
Planning and implementing. Unveiling the advanced technology of Microsoft Azu...
Adam ochs sentinel
Microsoft Sentinel and Its Components.pptx
Azure Day Rome Reloaded 2019 - Azure Sentinel: set up automated threat respon...
SC-900 Capabilities of Microsoft Security Solutions
07 - Defend Against Threats with SIEM Plus XDR Workshop - Microsoft Sentinel ...
Cloudbrew 2019 - Threat hunting with the Microsoft Cloud
L400-P1 Overview.pdf
Azure Security Overview
Remediate and secure your organization with azure sentinel
Nicholas DiCola | Secure your IT resources with Azure Security Center
7 Experts on Implementing Azure Sentinel
do you want to know about what is Microsoft Sentinel.pdf
Protect Office 365 with Azure Sentinel
Azure Security Center
Power of the cloud - Introduction to azure security
Power of the Cloud - Introduction to Microsoft Azure Security
Ad

Recently uploaded (20)

PPTX
Module 1 Introduction to Web Programming .pptx
PDF
Data Virtualization in Action: Scaling APIs and Apps with FME
PDF
5-Ways-AI-is-Revolutionizing-Telecom-Quality-Engineering.pdf
PDF
Advancing precision in air quality forecasting through machine learning integ...
PDF
Improvisation in detection of pomegranate leaf disease using transfer learni...
PDF
Comparative analysis of machine learning models for fake news detection in so...
PDF
NewMind AI Weekly Chronicles – August ’25 Week IV
PDF
INTERSPEECH 2025 「Recent Advances and Future Directions in Voice Conversion」
PPTX
AI-driven Assurance Across Your End-to-end Network With ThousandEyes
DOCX
Basics of Cloud Computing - Cloud Ecosystem
DOCX
search engine optimization ppt fir known well about this
PPTX
Microsoft User Copilot Training Slide Deck
PPTX
Build Your First AI Agent with UiPath.pptx
PDF
Transform-Quality-Engineering-with-AI-A-60-Day-Blueprint-for-Digital-Success.pdf
PDF
Transform-Your-Streaming-Platform-with-AI-Driven-Quality-Engineering.pdf
PDF
4 layer Arch & Reference Arch of IoT.pdf
PDF
Convolutional neural network based encoder-decoder for efficient real-time ob...
PDF
The-Future-of-Automotive-Quality-is-Here-AI-Driven-Engineering.pdf
PDF
Statistics on Ai - sourced from AIPRM.pdf
PDF
Lung cancer patients survival prediction using outlier detection and optimize...
Module 1 Introduction to Web Programming .pptx
Data Virtualization in Action: Scaling APIs and Apps with FME
5-Ways-AI-is-Revolutionizing-Telecom-Quality-Engineering.pdf
Advancing precision in air quality forecasting through machine learning integ...
Improvisation in detection of pomegranate leaf disease using transfer learni...
Comparative analysis of machine learning models for fake news detection in so...
NewMind AI Weekly Chronicles – August ’25 Week IV
INTERSPEECH 2025 「Recent Advances and Future Directions in Voice Conversion」
AI-driven Assurance Across Your End-to-end Network With ThousandEyes
Basics of Cloud Computing - Cloud Ecosystem
search engine optimization ppt fir known well about this
Microsoft User Copilot Training Slide Deck
Build Your First AI Agent with UiPath.pptx
Transform-Quality-Engineering-with-AI-A-60-Day-Blueprint-for-Digital-Success.pdf
Transform-Your-Streaming-Platform-with-AI-Driven-Quality-Engineering.pdf
4 layer Arch & Reference Arch of IoT.pdf
Convolutional neural network based encoder-decoder for efficient real-time ob...
The-Future-of-Automotive-Quality-is-Here-AI-Driven-Engineering.pdf
Statistics on Ai - sourced from AIPRM.pdf
Lung cancer patients survival prediction using outlier detection and optimize...

Introduction to Azure Sentinel

  • 1. Microsoft Azure Sentinel Arnaud Lheureux Cloud Chief Security Officer One Commercial Partner Microsoft APAC Twitter: @arnaudLheureux
  • 3. Too many disconnected products High volume of noisy alerts Security skills in short supplyLack of automation Rising infrastructure costs and upfront investment IT deployment & maintenance Sophistication of threats Traditional SOC Challenges
  • 4. Cloud + Artificial Intelligence Security Operations Team
  • 5. Introducing Microsoft Azure Sentinel Collect DetectRespond Limitless cloud speed and scale Faster threat protection with AI by your side Bring your Office 365 data for Free Easy integration with your existing tools Investigate Cloud-native SIEM for intelligent security analytics for your entire enterprise Security data across your enterprise Rapidly and automate protection Threats with vast threat intelligence and AI Critical incidents guided by AI
  • 6. Microsoft Security Advantage $1B annual investment in cybersecurity 3500+ global security experts Trillions of diverse signals for unparalleled intelligence
  • 8. Focus on security, unburden SecOps from IT tasks © Microsoft Corporation Azure No infrastructure setup or maintenance SIEM Service available in Azure portal Scale automatically, put no limits to compute or storage resources
  • 9. Reduce security and IT costs No infrastructure costs or upfront commitment Only pay for what you use Bring your Office 365 Data for free Cloud-native, scalable SIEM
  • 10. Integrate with existing tools and data sources
  • 11. Pre-wired integration with Microsoft solutions Connectors for many partner solutions Standard log format support for all sources Collect security data at cloud scale from all sources across your enterprise Proven log platform with more than 10 petabytes of daily ingestion Microsoft 365
  • 12. Bring your own insights, machine learning models, and threat intelligence Tap into our security community to build on detections, threat intelligence, and response automation. Optimize for your needs © Microsoft Corporation Azure Bring your own ML Models & Threat Intelligence Security Community
  • 13. Demo Overview dashboard and data collection © Microsoft Corporation Azure
  • 14. AI by your side
  • 15. Correlated rules User Entity Behavior Analysis integrated with Microsoft 365 Bring your own ML models Pre-built Machine Learning models Threat Detection and Analysis ML models based on decades of Microsoft security experience and learnings Millions of signals filtered to few correlated and prioritized incidents Insights based on vast Microsoft threat intelligence and your own TI Reduce alert fatigue by up to 90% Detect threats and analyze security data quickly with AI
  • 16. Investigate threats with AI and hunt suspicious activities at scale, tapping into years of cybersecurity work at Microsoft © Microsoft Corporation Azure Get prioritized alerts and automated expert guidance Visualize the entire attack and its impact Hunt for suspicious activities using pre-built queries and Azure Notebooks
  • 17. Respond rapidly with built-in orchestration and automation Build automated and scalable playbooks that integrate across tools ! Security Products Ticketing Systems (ServiceNow) Additional tools
  • 18. Demo Threat detection, investigation and response © Microsoft Corporation Azure
  • 19. Sentinel In a nutshell © Microsoft Corporation Azure Microsoft Services Analyze & Detect Investigate & Hunt Automate & Orchestrate Response Visibility Data Ingestion Data Repository Data Search Enrichment IntegrateCollect
  • 20. What our partners and early adopters say about Azure Sentinel © Microsoft Corporation Azure “Azure Sentinel provides a unique and cloud centric security incident and event management solution that is both simple to deploy and able to manage complex hybrid customer environments.” Jeff Dunmall Executive Vice President of Global Managed Services “My team has the upper hand with Azure Sentinel. I get unbridled capacity, and the built-in AI and threat intelligence based on Microsoft’s years of cybersecurity experience really helps my team focus on keeping our clients secure vs managing infrastructure and threat feeds”. Andrew Winkelmann Global Security Consulting Practice Lead
  • 21. Take actions today- Get started with Sentinel Connect data sources To learn more, visit https://aka.ms/AzureSentinel Start Microsoft Azure trial Open Azure Sentinel preview dashboard in Azure Portal
  • 22. Thanks for your attention! Arnaud Lheureux, CISSP, CCSP https://aka.ms/arnaud Twitter : @arnaudLheureux