topic
Identity
2 posts tagged “Identity”.
Identity Attack Graph in Microsoft Sentinel
How Sentinel's Identity Attack Graph exposes hidden access paths between identities, permissions, groups, and Azure resources — use cases, onboarding prerequisites (including the Azure Resource Graph connector), and how graph-based investigation complements KQL.
Threat Intelligence & Identity Ecosystem Connectors in Microsoft Sentinel
Integrating third-party threat-intel feeds (GreyNoise, Team Cymru) with identity logs (OneLogin, PingOne, Keeper) in Microsoft Sentinel — enrichment pipelines, false-positive reduction, and MITRE-mapped detection rules.