Transfer Microsoft Sentinel Logs to Azure Data Explorer
-
Azure Data Explorer is a powerful software for real-time analysis of large volumes of streamed data. However, it can be used for data storage as well, and it’s cheaper than Microsoft Sentinel. Additionally, the service is useful if you want to query logs with Kusto Query Language (KQL), which is also available for Azure Log Analytics.
Read the article by Nicolas Prigent, a three-time Microsoft MVP, on how to transfer your Microsoft Sentinel logs to Azure Data Explorer for cheaper data storage and robust data analytics.