You'd usually monitor Sign-ins from AAD (Entra) within Microsoft Sentinel. If you have Defender for Endpoint (on the users devices) or Microsoft Defender for Cloud Apps - you can use those logs with Microsoft Sentinel for monitoring the systems (but not network level logs)
How SIEM can help when we have open network like each user is using their home Wi-Fi to use all the business apps and systems remotely? because we don't have controlled network like VPN or any other which is fully controlled by IT team where we can monito
Vinod Survase
4,776
Reputation points
How SIEM can help when we have open network like each user is using their home Wi-Fi to use all the business apps and systems remotely? because we don't have controlled network like VPN or any other which is fully controlled by IT team where we can monitor the network or systems?
Microsoft Security | Microsoft Sentinel
1,295 questions
1 answer
Sort by: Most helpful
-
Clive Watson 7,866 Reputation points MVP Volunteer Moderator
2024-01-08T17:30:15.41+00:00