Create Detections & Perform Investigations using Azure Sentinel
Threat Detection with Azure Sentinel Analytics What is Azure Sentinel Analytics? Azure Sentinel Analytics offers several functionalities that can be used to implement security for the data and resources at Contoso. Historical data collected from your workstations, servers, networking devices, firewalls, intrusion prevention, sensors, and so on can be analyzed from various sources to identify correlations and anomalies. Analytics rules can trigger alerts based on the attack techniques that are used by known malicious actors and these rules can be easily set up to help ensure your SOC is alerted to potential security incidents in your environment regularly. Why use analytics rules for security operations? Azure Sentinel Analytics plays a vital part in the overall detection of the security threat by correlating and matching the signals that impact the presence of a cybersecurity threat. You can easily get insights into where an attack originated from, what resources were compromised,