Skip to content

IT Dev Lab

Learnings and musings of a Microsoft Identity & Security consultant

IT Dev Lab

Learnings and musings of a Microsoft Identity & Security consultant

  • Home
  • Post Series
    • WDAC Wednesday
  • Links library
  • About
    • Home
    • Uncategorized
Sentinel Uncategorized

Deploying Sentinel analytic rules from DevOps

Andrew 18 October 2023 0 Comments

There is a Microsoft Sentinel feature currently in public preview that allow you to deploy custom Sentinel content from DevOps or GitHub, such as analytic rules. The linked article provides…

Azure AD Uncategorized

Bulk load devices to Azure AD Group

Andrew 29 September 2022 0 Comments

Recently I’ve been needing to put into Azure AD Groups large numbers of device objects and it turns out you can’t easily use the out of the box tools in…

Microsoft 365 PowerShell Uncategorized

Exchange Online DNS validator

Andrew 27 September 2022 0 Comments

Recently in doing a migration project to Exchange Online Protection (for a large number of domains) it was necessary on a regular basis to make changes to DNS records, and…

Uncategorized WDAC

Confirm what WDAC policies are present on a device

Andrew 18 May 2022 0 Comments

Windows Defender Application Control (WDAC) is an application control system integrated into Windows 10/11 and is used within Enterprise to whitelist trusted applications, allowing them to run, and blocking either…

Uncategorized

Hello world!

user 13 April 2022 0 Comments

Welcome to WordPress. This is your first post. Edit or delete it, then start writing!

You Missed

WDAC

WDAC Wedesday: Audit mode advantage

WDAC

WDAC Wedesday: Why anti-virus and EDR isn’t enough

Microsoft Entra MIM2016

Looking to migrate from MIM to Microsoft Entra?

Sentinel WDAC

January 2024 WDAC Advanced Hunting changes

IT Dev Lab

Learnings and musings of a Microsoft Identity & Security consultant