Microsoft Sentinel

GPTKB entity

Statements (41)
Predicate Object
gptkbp:instanceOf cloud-native security information and event management (SIEM) solution
gptkbp:category gptkb:SOAR
cloud security
SIEM
gptkbp:developedBy gptkb:Microsoft
gptkbp:documentation https://learn.microsoft.com/en-us/azure/sentinel/
https://www.w3.org/2000/01/rdf-schema#label Microsoft Sentinel
gptkbp:integratesWith gptkb:Azure_Active_Directory
gptkb:Microsoft_Defender_for_Cloud
gptkb:Microsoft_365_Defender
third-party security solutions
gptkbp:launched 2019
gptkbp:offers gptkb:personal_computer
gptkb:user_and_entity_behavior_analytics_(UEBA)
case management
data connectors
connectors
customizable dashboards
workbooks
alert management
investigation tools
playbooks
integration with Logic Apps
integration with Azure Monitor
hunting queries
analytics rules
integration with Azure Security Center
integration with Microsoft Graph Security API
machine learning-based detection
gptkbp:platform gptkb:Microsoft_Azure
gptkbp:provides security analytics
threat intelligence
security orchestration automation and response (SOAR)
gptkbp:supports log collection
automated response
incident detection
gptkbp:uses gptkb:Kusto_Query_Language_(KQL)
gptkbp:website https://azure.microsoft.com/en-us/services/microsoft-sentinel/
gptkbp:bfsParent gptkb:Azure_Defender_for_Cloud
gptkb:Microsoft_Defender_for_Cloud
gptkbp:bfsLayer 6