Threat Detection & Risk Evaluation using Microsoft Azure Sentinel
2025
Overview
In this personal project, I configured Microsoft Azure Sentinel to collect and analyze security events from a Linux virtual machine via syslog. I investigated and triaged brute-force login attempts as well as tuned detection rules to improve accuracy, and incident investigation. This hands-on work strengthened my skills in SIEM configuration, log analysis, and proactive threat detection.
Results
Reduced false positives and improved overall detection efficiency. Developed a strong foundation in managing security events and incident response workflows.