Microsoft Teams and SharePoint serve central roles in communication and data-sharing in the Microsoft 365 Cloud. Since both workloads touch on so many technologies in the Cloud, it can benefit from human and automated analysis. This applies to both hunting in logs, and real-time monitoring of meetings. Azure Sentinel offers admins these solutions. Topics: Introduction to Azure Sentinel, Setup and Planning, Collecting Data: Connectors for Office 365, Normalizing, Monitoring and Visualizing Data, Investigate threats and Helpful hunting KQL queries, Auditing external users, Bots and Apps, Automate responses, Roadmap
Speakers
Ragnar Heil - Microsoft Office Apps and Services MVP
Quest