Discovereveryday df3ndr01x04_RE:authmail.eml-and-siem.kql
01x04_RE:authmail.eml-and-siem.kql

01x04_RE:authmail.eml-and-siem.kql

Update: 2025-03-01
Share

Description

In this episode...

* Chris revisits his e-mail authentication and security from last time to dig a little deeper.

* Koos recently did some talks about SIEM migrations to Sentinel and keeping things as cost-efficient as possible. He also believes a company shouldn't focus solely on Microsoft Sentinel, and should consider looking into alternatives alongside it like Azure Data Explorer. And why are companies so focussed on collecting all those logs in a "legacy" matter?

Full show notes available on our blog:

https://df3ndr.io/episodes/2025/03/01/01x04_REauthmail-and-siem_kql.html

Follow us on your favorite podcast platform or check us out at https://df3ndr.io

Comments 
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

01x04_RE:authmail.eml-and-siem.kql

01x04_RE:authmail.eml-and-siem.kql