SlideShare a Scribd company logo
8
Most read
19
Most read
21
Most read
Microsoft Azure Sentinel
Arnaud Lheureux
Cloud Chief Security Officer
One Commercial Partner
Microsoft APAC
Twitter: @arnaudLheureux
Security Operations Team
Expanding digital estate
Too many
disconnected
products
High volume
of noisy alerts
Security skills
in short supplyLack of
automation
Rising infrastructure
costs and upfront
investment
IT deployment &
maintenance
Sophistication
of threats
Traditional SOC Challenges
Cloud + Artificial Intelligence
Security
Operations Team
Introducing Microsoft Azure Sentinel
Collect
DetectRespond
Limitless cloud speed and scale
Faster threat protection with AI by your side
Bring your Office 365 data for Free
Easy integration with your existing tools
Investigate
Cloud-native SIEM for intelligent security analytics for your entire enterprise
Security data across
your enterprise
Rapidly and automate
protection
Threats with vast
threat intelligence
and AI
Critical incidents
guided by AI
Microsoft Security Advantage
$1B annual investment in cybersecurity
3500+ global security experts
Trillions of diverse signals for
unparalleled intelligence
Limitless cloud speed
and scale
Focus on security, unburden
SecOps from IT tasks
© Microsoft Corporation Azure
No infrastructure setup or maintenance
SIEM Service available in Azure portal
Scale automatically, put no limits
to compute or storage resources
Reduce security and IT costs
No infrastructure costs or
upfront commitment
Only pay for what you use
Bring your Office 365 Data for free
Cloud-native, scalable SIEM
Integrate with existing
tools and data sources
Pre-wired integration with Microsoft solutions
Connectors for many partner solutions
Standard log format support for all sources
Collect security data at cloud scale from all sources across
your enterprise
Proven log platform with more than 10
petabytes of daily ingestion
Microsoft 365
Bring your own insights, machine learning
models, and threat intelligence
Tap into our security community to build
on detections, threat intelligence, and
response automation.
Optimize for your needs
© Microsoft Corporation Azure
Bring your own ML Models
& Threat Intelligence
Security Community
Demo
Overview dashboard and
data collection
© Microsoft Corporation Azure
AI by your side
Correlated
rules
User Entity
Behavior Analysis
integrated with
Microsoft 365
Bring your own
ML models
Pre-built Machine
Learning models
Threat Detection and
Analysis
ML models based on decades of Microsoft
security experience and learnings
Millions of signals filtered to few correlated and
prioritized incidents
Insights based on vast Microsoft threat
intelligence and your own TI
Reduce alert fatigue by up to 90%
Detect threats and analyze security data quickly with AI
Investigate threats with AI and hunt suspicious activities at scale, tapping
into years of cybersecurity work at Microsoft
© Microsoft Corporation Azure
Get prioritized alerts and automated expert
guidance
Visualize the entire attack and its impact
Hunt for suspicious activities using pre-built queries
and Azure Notebooks
Respond rapidly with built-in orchestration and automation
Build automated and
scalable playbooks that
integrate across tools
! Security Products
Ticketing Systems
(ServiceNow)
Additional tools
Demo
Threat detection, investigation
and response
© Microsoft Corporation Azure
Sentinel In a nutshell
© Microsoft Corporation Azure
Microsoft
Services
Analyze & Detect Investigate & Hunt Automate &
Orchestrate Response
Visibility
Data Ingestion Data Repository Data Search
Enrichment
IntegrateCollect
What our partners and early adopters say about Azure Sentinel
© Microsoft Corporation Azure
“Azure Sentinel provides a unique and cloud
centric security incident and event
management solution that is both simple to
deploy and able to manage complex hybrid
customer environments.”
Jeff Dunmall
Executive Vice President of Global
Managed Services
“My team has the upper hand with Azure
Sentinel. I get unbridled capacity, and the built-in
AI and threat intelligence based on Microsoft’s
years of cybersecurity experience really helps my
team focus on keeping our clients secure vs
managing infrastructure and threat feeds”.
Andrew Winkelmann
Global Security Consulting Practice Lead
Take actions today- Get started with Sentinel
Connect
data sources
To learn more, visit
https://aka.ms/AzureSentinel
Start
Microsoft Azure trial
Open Azure Sentinel
preview dashboard
in Azure Portal
Thanks for your attention!
Arnaud Lheureux, CISSP, CCSP
https://aka.ms/arnaud
Twitter : @arnaudLheureux

More Related Content

PDF
Microsoft Azure Sentinel
PPTX
Azure sentinel
PDF
introduction to Azure Sentinel
PPTX
Azure Sentinel
PPTX
Microsoft Sentinel Deployment V1.pptx
PPTX
Azure Sentinel Jan 2021 overview deck
PDF
Microsoft Sentinel- a cloud native SIEM & SOAR.pdf
PPTX
07 - Defend Against Threats with SIEM Plus XDR Workshop - Microsoft Sentinel ...
Microsoft Azure Sentinel
Azure sentinel
introduction to Azure Sentinel
Azure Sentinel
Microsoft Sentinel Deployment V1.pptx
Azure Sentinel Jan 2021 overview deck
Microsoft Sentinel- a cloud native SIEM & SOAR.pdf
07 - Defend Against Threats with SIEM Plus XDR Workshop - Microsoft Sentinel ...

What's hot (20)

PPTX
Azure Sentinel.pptx
PPTX
SEIM-Microsoft Sentinel.pptx
PPTX
Microsoft Defender for Endpoint
PDF
Microsoft Defender and Azure Sentinel
PDF
Microsoft 365 Enterprise Security with E5 Overview
PPTX
Security operation center (SOC)
PPTX
Splunk Phantom SOAR Roundtable
PPTX
Secure your Access to Cloud Apps using Microsoft Defender for Cloud Apps
PPTX
cyber-security-reference-architecture
PDF
Building a Next-Generation Security Operations Center (SOC)
PPTX
Microsoft Defender for Endpoint Overview.pptx
PDF
Microsoft Zero Trust
PDF
Azure Sentinel
PDF
Azure Sentinel Tips
PPTX
Azure active directory
PPTX
Security Operations Center (SOC) Essentials for the SME
PDF
Microsoft 365 Compliance and Security Overview
PPTX
SIEM presentation final
PDF
Microsoft Azure Security Overview
PDF
Micro segmentation and zero trust for security and compliance - Guardicore an...
Azure Sentinel.pptx
SEIM-Microsoft Sentinel.pptx
Microsoft Defender for Endpoint
Microsoft Defender and Azure Sentinel
Microsoft 365 Enterprise Security with E5 Overview
Security operation center (SOC)
Splunk Phantom SOAR Roundtable
Secure your Access to Cloud Apps using Microsoft Defender for Cloud Apps
cyber-security-reference-architecture
Building a Next-Generation Security Operations Center (SOC)
Microsoft Defender for Endpoint Overview.pptx
Microsoft Zero Trust
Azure Sentinel
Azure Sentinel Tips
Azure active directory
Security Operations Center (SOC) Essentials for the SME
Microsoft 365 Compliance and Security Overview
SIEM presentation final
Microsoft Azure Security Overview
Micro segmentation and zero trust for security and compliance - Guardicore an...
Ad

Similar to Introduction to Azure Sentinel (20)

PPTX
TechTalksUtah-Sentinel-20191108.pptx
PDF
SBA Security Meetup - Deploying and managing azure sentinel as code by Bojan ...
PPTX
Azure Sentinel with Office 365
PPTX
Modernize your Security Operations with Azure Sentinel
PDF
Planning and implementing. Unveiling the advanced technology of Microsoft Azu...
PPTX
Adam ochs sentinel
PPTX
Microsoft Sentinel and Its Components.pptx
PDF
Azure Day Rome Reloaded 2019 - Azure Sentinel: set up automated threat respon...
PPTX
SC-900 Capabilities of Microsoft Security Solutions
PPTX
Cloudbrew 2019 - Threat hunting with the Microsoft Cloud
PDF
L400-P1 Overview.pdf
PDF
Azure Security Overview
PPTX
Remediate and secure your organization with azure sentinel
PDF
Nicholas DiCola | Secure your IT resources with Azure Security Center
PDF
7 Experts on Implementing Azure Sentinel
PDF
do you want to know about what is Microsoft Sentinel.pdf
PPTX
Protect Office 365 with Azure Sentinel
PDF
Azure Security Center
PPTX
Power of the cloud - Introduction to azure security
PPTX
Power of the Cloud - Introduction to Microsoft Azure Security
TechTalksUtah-Sentinel-20191108.pptx
SBA Security Meetup - Deploying and managing azure sentinel as code by Bojan ...
Azure Sentinel with Office 365
Modernize your Security Operations with Azure Sentinel
Planning and implementing. Unveiling the advanced technology of Microsoft Azu...
Adam ochs sentinel
Microsoft Sentinel and Its Components.pptx
Azure Day Rome Reloaded 2019 - Azure Sentinel: set up automated threat respon...
SC-900 Capabilities of Microsoft Security Solutions
Cloudbrew 2019 - Threat hunting with the Microsoft Cloud
L400-P1 Overview.pdf
Azure Security Overview
Remediate and secure your organization with azure sentinel
Nicholas DiCola | Secure your IT resources with Azure Security Center
7 Experts on Implementing Azure Sentinel
do you want to know about what is Microsoft Sentinel.pdf
Protect Office 365 with Azure Sentinel
Azure Security Center
Power of the cloud - Introduction to azure security
Power of the Cloud - Introduction to Microsoft Azure Security
Ad

Recently uploaded (20)

PPT
“AI and Expert System Decision Support & Business Intelligence Systems”
PDF
Optimiser vos workloads AI/ML sur Amazon EC2 et AWS Graviton
PDF
Dropbox Q2 2025 Financial Results & Investor Presentation
DOCX
The AUB Centre for AI in Media Proposal.docx
PDF
KodekX | Application Modernization Development
PDF
cuic standard and advanced reporting.pdf
PDF
Review of recent advances in non-invasive hemoglobin estimation
PDF
NewMind AI Weekly Chronicles - August'25 Week I
PPTX
Cloud computing and distributed systems.
PPTX
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
PDF
[발표본] 너의 과제는 클라우드에 있어_KTDS_김동현_20250524.pdf
PDF
solutions_manual_-_materials___processing_in_manufacturing__demargo_.pdf
PDF
Network Security Unit 5.pdf for BCA BBA.
PPTX
Effective Security Operations Center (SOC) A Modern, Strategic, and Threat-In...
PDF
Empathic Computing: Creating Shared Understanding
PPT
Teaching material agriculture food technology
PDF
NewMind AI Monthly Chronicles - July 2025
PDF
GamePlan Trading System Review: Professional Trader's Honest Take
PDF
Chapter 3 Spatial Domain Image Processing.pdf
PDF
Diabetes mellitus diagnosis method based random forest with bat algorithm
“AI and Expert System Decision Support & Business Intelligence Systems”
Optimiser vos workloads AI/ML sur Amazon EC2 et AWS Graviton
Dropbox Q2 2025 Financial Results & Investor Presentation
The AUB Centre for AI in Media Proposal.docx
KodekX | Application Modernization Development
cuic standard and advanced reporting.pdf
Review of recent advances in non-invasive hemoglobin estimation
NewMind AI Weekly Chronicles - August'25 Week I
Cloud computing and distributed systems.
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
[발표본] 너의 과제는 클라우드에 있어_KTDS_김동현_20250524.pdf
solutions_manual_-_materials___processing_in_manufacturing__demargo_.pdf
Network Security Unit 5.pdf for BCA BBA.
Effective Security Operations Center (SOC) A Modern, Strategic, and Threat-In...
Empathic Computing: Creating Shared Understanding
Teaching material agriculture food technology
NewMind AI Monthly Chronicles - July 2025
GamePlan Trading System Review: Professional Trader's Honest Take
Chapter 3 Spatial Domain Image Processing.pdf
Diabetes mellitus diagnosis method based random forest with bat algorithm

Introduction to Azure Sentinel

  • 1. Microsoft Azure Sentinel Arnaud Lheureux Cloud Chief Security Officer One Commercial Partner Microsoft APAC Twitter: @arnaudLheureux
  • 3. Too many disconnected products High volume of noisy alerts Security skills in short supplyLack of automation Rising infrastructure costs and upfront investment IT deployment & maintenance Sophistication of threats Traditional SOC Challenges
  • 4. Cloud + Artificial Intelligence Security Operations Team
  • 5. Introducing Microsoft Azure Sentinel Collect DetectRespond Limitless cloud speed and scale Faster threat protection with AI by your side Bring your Office 365 data for Free Easy integration with your existing tools Investigate Cloud-native SIEM for intelligent security analytics for your entire enterprise Security data across your enterprise Rapidly and automate protection Threats with vast threat intelligence and AI Critical incidents guided by AI
  • 6. Microsoft Security Advantage $1B annual investment in cybersecurity 3500+ global security experts Trillions of diverse signals for unparalleled intelligence
  • 8. Focus on security, unburden SecOps from IT tasks © Microsoft Corporation Azure No infrastructure setup or maintenance SIEM Service available in Azure portal Scale automatically, put no limits to compute or storage resources
  • 9. Reduce security and IT costs No infrastructure costs or upfront commitment Only pay for what you use Bring your Office 365 Data for free Cloud-native, scalable SIEM
  • 10. Integrate with existing tools and data sources
  • 11. Pre-wired integration with Microsoft solutions Connectors for many partner solutions Standard log format support for all sources Collect security data at cloud scale from all sources across your enterprise Proven log platform with more than 10 petabytes of daily ingestion Microsoft 365
  • 12. Bring your own insights, machine learning models, and threat intelligence Tap into our security community to build on detections, threat intelligence, and response automation. Optimize for your needs © Microsoft Corporation Azure Bring your own ML Models & Threat Intelligence Security Community
  • 13. Demo Overview dashboard and data collection © Microsoft Corporation Azure
  • 14. AI by your side
  • 15. Correlated rules User Entity Behavior Analysis integrated with Microsoft 365 Bring your own ML models Pre-built Machine Learning models Threat Detection and Analysis ML models based on decades of Microsoft security experience and learnings Millions of signals filtered to few correlated and prioritized incidents Insights based on vast Microsoft threat intelligence and your own TI Reduce alert fatigue by up to 90% Detect threats and analyze security data quickly with AI
  • 16. Investigate threats with AI and hunt suspicious activities at scale, tapping into years of cybersecurity work at Microsoft © Microsoft Corporation Azure Get prioritized alerts and automated expert guidance Visualize the entire attack and its impact Hunt for suspicious activities using pre-built queries and Azure Notebooks
  • 17. Respond rapidly with built-in orchestration and automation Build automated and scalable playbooks that integrate across tools ! Security Products Ticketing Systems (ServiceNow) Additional tools
  • 18. Demo Threat detection, investigation and response © Microsoft Corporation Azure
  • 19. Sentinel In a nutshell © Microsoft Corporation Azure Microsoft Services Analyze & Detect Investigate & Hunt Automate & Orchestrate Response Visibility Data Ingestion Data Repository Data Search Enrichment IntegrateCollect
  • 20. What our partners and early adopters say about Azure Sentinel © Microsoft Corporation Azure “Azure Sentinel provides a unique and cloud centric security incident and event management solution that is both simple to deploy and able to manage complex hybrid customer environments.” Jeff Dunmall Executive Vice President of Global Managed Services “My team has the upper hand with Azure Sentinel. I get unbridled capacity, and the built-in AI and threat intelligence based on Microsoft’s years of cybersecurity experience really helps my team focus on keeping our clients secure vs managing infrastructure and threat feeds”. Andrew Winkelmann Global Security Consulting Practice Lead
  • 21. Take actions today- Get started with Sentinel Connect data sources To learn more, visit https://aka.ms/AzureSentinel Start Microsoft Azure trial Open Azure Sentinel preview dashboard in Azure Portal
  • 22. Thanks for your attention! Arnaud Lheureux, CISSP, CCSP https://aka.ms/arnaud Twitter : @arnaudLheureux