Skip to content

IT Dev Lab

Learnings and musings of a Microsoft Identity & Security consultant

IT Dev Lab

Learnings and musings of a Microsoft Identity & Security consultant

  • Home
  • Post Series
    • WDAC Wednesday
  • Links library
  • About
    • Home
    • Sentinel
Sentinel WDAC

January 2024 WDAC Advanced Hunting changes

Andrew 12 December 2023 0 Comments

Microsoft today published an update advisory for Windows Defender Application Control (WDAC) Advanced Hunting changes that could have an impact if you have any hunting rules or dashboards in place.…

Sentinel Uncategorized

Deploying Sentinel analytic rules from DevOps

Andrew 18 October 2023 0 Comments

There is a Microsoft Sentinel feature currently in public preview that allow you to deploy custom Sentinel content from DevOps or GitHub, such as analytic rules. The linked article provides…

Uncategorized WDAC

Confirm what WDAC policies are present on a device

Andrew 18 May 2022 0 Comments

Windows Defender Application Control (WDAC) is an application control system integrated into Windows 10/11 and is used within Enterprise to whitelist trusted applications, allowing them to run, and blocking either…

You Missed

WDAC

WDAC Wednesday: AppLocker vs Application Control for Business

WDAC

WDAC Wedesday: Audit mode advantage

WDAC

WDAC Wedesday: Why anti-virus and EDR isn’t enough

Microsoft Entra MIM2016

Looking to migrate from MIM to Microsoft Entra?

IT Dev Lab

Learnings and musings of a Microsoft Identity & Security consultant