
Microsoft 365 Security Administration: MS-500 Exam Guide
By :

Now that you have configured your Azure Sentinel instance and set up some workbooks and playbooks, it is important to manage and monitor Azure Sentinel in order to ensure that you are regularly reviewing and responding to any threats and taking any corrective action that may be required.
Some of the methods available to manage and monitor Azure Sentinel are described as follows.
From the Azure Sentinel | Overview section, you are able to review a selection of alerts and metrics, as shown in the following screenshot:
Figure 10.37 – Azure Sentinel Overview screen
Here you will be able to review events and alerts, usage, and metrics.
From the Azure Sentinel | Logs section, you may choose from a large number of built-in queries under Log Analytics workspaces and see information on things such as Unauthorized Users and Throttled Users, as shown in the following...
Change the font size
Change margin width
Change background colour