Threat Detection & Risk Evaluation using Microsoft Azure Sentinel

2025

Overview

In this personal project, I configured Microsoft Azure Sentinel to collect and analyze security events from a Linux virtual machine via syslog. I investigated and triaged brute-force login attempts as well as tuned detection rules to improve accuracy, and incident investigation. This hands-on work strengthened my skills in SIEM configuration, log analysis, and proactive threat detection.

Results

Reduced false positives and improved overall detection efficiency. Developed a strong foundation in managing security events and incident response workflows.