{"id":9028,"date":"2023-11-16T07:05:50","date_gmt":"2023-11-16T15:05:50","guid":{"rendered":"https:\/\/www.microsoft.com\/insidetrack\/blog\/?p=9028"},"modified":"2023-11-16T08:04:46","modified_gmt":"2023-11-16T16:04:46","slug":"moving-to-next-generation-siem-at-microsoft-with-microsoft-azure-sentinel","status":"publish","type":"post","link":"https:\/\/www.microsoft.com\/insidetrack\/blog\/moving-to-next-generation-siem-at-microsoft-with-microsoft-azure-sentinel\/","title":{"rendered":"Moving to next-generation SIEM at Microsoft with Microsoft Sentinel"},"content":{"rendered":"

\"MicrosoftOur internal security team works diligently 24 hours a day, 7 days a week to help protect Microsoft IP, its employees, and its overall business health from security threats.<\/p>\n

We recently implemented Microsoft Sentinel to replace a preexisting, on-premises solution for security information and event management (SIEM). With Microsoft Sentinel, we can ingest and appropriately respond to more than 20 billion cybersecurity events per day.<\/p>\n

Microsoft Sentinel supplies cloud-scale SIEM functionality that allows integration with crucial systems, provides accurate and timely response to security threats, and supports the SIEM requirements of our team.<\/p>\n

Our team is responsible for maintaining security and compliance standards across Microsoft. Managing the massive volume of incoming security-related data is critical to Microsoft\u2019s business health. Historically, we have performed SIEM using a third-party tool hosted on-premises in Microsoft datacenters.<\/p>\n

However, we recognized several areas in which they could improve their service by implementing a next-generation SIEM tool. Some of the challenges when using the old tool included:<\/p>\n