Microsoft365
- Searching the Unified Audit Log by SharePoint or OneDrive URLHow to use the ObjectId field in Microsoft Purview to filter audit log events by SharePoint or OneDrive URL.
- Configuring Microsoft Sentinel with Entra ID and UEBAStep-by-step guide to setting up Microsoft Sentinel, connecting Entra ID logs, and enabling UEBA for behavioral anomaly detection.
- Break-glass account login alertsSet up email alerts in Azure when a break-glass account signs in, using Log Analytics and KQL.