Skip to main content

2 posts tagged with "Microsoft Sentinel"

View All Tags

A New Qiita Article: Sentinel User Behavior Analytics with ASIM Authentication

· One min read
James Yip
Managing Director

Eventus has published a new engineering article on Qiita: “Designing Sentinel User Behavior Analytics Without Raw-Table Dependencies: Using ASIM Authentication as the User Baseline.”

The article looks at why analytics built directly on tables such as SigninLogs, SecurityEvent, and connector-specific logs become harder to maintain as authentication sources multiply. It also covers how raw event volume can run into result limits, while connector outages or ingestion delays can leave gaps in the data.

SIEM+ Now Officially Supports Microsoft Sentinel

· 3 min read
James Yip
Managing Director

We're announcing that SIEM+ now has full, native support for Microsoft Sentinel, joining our existing integrations with Devo, Splunk, and QRadar. If your organization runs Sentinel as its SIEM, you can now add SIEM+'s alert consolidation and AI-powered triage on top of it without changing anything about your existing Sentinel deployment.