Must Learn KQL Part 2: Just Above Sea Level

This post is part of an ongoing series to educate about the simplicity and power of the Kusto Query Language (KQL). If you'd like the 90 second-post commercial recap that seems to be a standard part of every TV show these days... The full series index (including code and queries) is located here: https://aka.ms/MustLearnKQL The … Continue reading Must Learn KQL Part 2: Just Above Sea Level

Must Learn KQL Part 1: Tools and Resources

This post is part of an ongoing series to educate about the simplicity and power of the Kusto Query Language (KQL). If you'd like the 90 second-post commercial recap that seems to be a standard part of every TV show these days... The full series index (including code and queries) is located here: https://aka.ms/MustLearnKQL The … Continue reading Must Learn KQL Part 1: Tools and Resources

The Short Takes Version of the updated Microsoft Sentinel Trial and Customer Benefit Offers

At Microsoft Ignite 2021, there were a slew of important announcements around features. But, one of the bigger, more customer relatable announcements centered around changes in our Sentinel Trial and the Customer benefit. These two offers are key to customers getting introduced to Microsoft Sentinel and then continuing their journey by taking advantage of special … Continue reading The Short Takes Version of the updated Microsoft Sentinel Trial and Customer Benefit Offers

Monitoring What’s New for Microsoft Sentinel Using RSS

A while back I posted a method to capture an RSS link from our Docs platform to monitor when the "What's New" page had changed. Since then, that method has changed - or, rather, the support for that method in our Docs platform has changed. A colleague and myself have been scrambling to figure out … Continue reading Monitoring What’s New for Microsoft Sentinel Using RSS

Schedule a Reboot for Manual installation of Windows 10 Feature Updates

With the various methods of deploying Windows 10 Feature Updates, the Feature Update Rollouts via Application Deployment does not provide restart notifications to the user and as such the device will automatically reboot if the “/noreboot” switch is not added to your batch file or if the switch is added the reboot will not happen … Continue reading Schedule a Reboot for Manual installation of Windows 10 Feature Updates

Upcoming Webinar to Discuss and Detail the On-Prem Security Monitoring for Microsoft Sentinel Solution

Last month, I announced an on-premises solution for gathering and filtering events and alerts prior to sending them to Microsoft Sentinel. As you can imagine the solution is a game-changer for providing immediate cost savings for sending data to the cloud. Since that announcement, the solution, the On-Prem Security Monitoring for Sentinel, has taken on … Continue reading Upcoming Webinar to Discuss and Detail the On-Prem Security Monitoring for Microsoft Sentinel Solution

Microsoft Defender For Cloud? – The Edge of Ingite

Azure Defender, Security Center?Azure Defender and ASC. The hot topic of recent months, and one that I have been asked about more than any other product or topic. Yesterday, a rebrand annoucement was made to try and address some of the confusion in terms of what it is and how it fits. I think this … Continue reading Microsoft Defender For Cloud? – The Edge of Ingite

Security News Now – Microsoft Ignite 2021 Defender for Cloud Edition

Catch up on the breadth of Microsoft security announcements for Microsoft Defender for Cloud from Microsoft Ignite 2021 and get a taste of our upcoming Security News Now news show. For details on the Microsoft Defender for Cloud announcements, visit the product blog: https://cda.ms/34F https://youtu.be/Uqu85rbXp74 ========================= [Want to discuss this further? Hit me up on Twitter … Continue reading Security News Now – Microsoft Ignite 2021 Defender for Cloud Edition

Hyper-V On-The-Go – Sending Files to Your VMs (Part 3)

In a previous blog I discussed methods for sending files to the VMs in your portable lab. Those methods included the following: ISO transferPowerShell Cmdlet transferDirect VHD TransferNetwork Transfer I've covered the ISO method and discarded the Network method for practicality reasons. In THIS blog I will be covering the PowerShell Cmdlet method. It can … Continue reading Hyper-V On-The-Go – Sending Files to Your VMs (Part 3)