Summary
In this chapter, we introduced you to Azure Sentinel. You learned that Azure Sentinel is a cloud-based SIEM tool that allows you to analyze large amounts of data from both Microsoft and third-party sources. We demonstrated how to enable Azure Sentinel and connect it to a new or existing workspace. Then we showed you how to set up and configure Azure Sentinel security playbooks, which can be set to respond manually or automatically when Sentinel detects security issues.
In the next chapter, we will show you how you can control secure access to information stored within your Microsoft 365 tenant by examining features such as implementing guest access with Azure B2B, securing privileged accounts, and customer lockbox features.