Enabling Microsoft Sentinel
Sentinel is Microsoft’s cloud-based SIEM and SOAR tool; it is a complete solution that can provide security and event data aggregation, threat analysis, and response across public cloud, hybrid, and on-premises environments.
This recipe will teach you to enable Microsoft Sentinel in your environment.
Getting ready
This recipe requires the following:
- A device with a browser, such as Edge or Chrome, to access the Azure portal: https://portal.azure.com
- Access to an Azure subscription, where you have access to the Owner role
How to do it…
This task consists of the following step:
- Enabling Microsoft Sentinel
Task – enabling Microsoft Sentinel
Perform the following steps:
- Sign in to the Azure portal: https://portal.azure.com.
- In the search bar, type
Microsoft Sentinel
; select Microsoft Sentinel from the list of services shown.
Figure 9.1 – Search...