Skip to content
Blog by Morten Knudsen about Microsoft Security, Azure, M365 & Automation
  • Blog Posts
  • Blog Posts by Category
  • Github Repo
  • Speaks & Events
  • Experts Live Denmark
  • Pictures
    • Pictures Microsoft
    • Pictures Tech Peers
  • About | Morten
    • Contact
    • Disclaimer

Blog by Morten Knudsen about Microsoft Security, Azure, M365 & Automation

  • Blog Posts
  • Blog Posts by Category
  • Github Repo
  • Speaks & Events
  • Experts Live Denmark
  • Pictures
    • Pictures Microsoft
    • Pictures Tech Peers
  • About | Morten
    • Contact
    • Disclaimer

MicrosoftSecurity

Troubleshooting & Monitoring of Log Ingestion with Data Collection Rules

18/09/202414/09/2024 by Morten Knudsen

As I have outlined in the series of blogs, Azure Logging is based on Data Collection Rules (DCRs) and Azure …

Read more

Tags azure, Loganalytics, Logging, MicrosoftSecurity, security, Sentinel

Orphaned Azure Security Principals Clean-up & Azure Policy Managed Identity Role Assignment Automation

06/02/202306/02/2023 by Morten Knudsen

This blog covers 2 topics : (1) how you can automate clean-up of any orphaned security principal role assignments – …

Read more

Tags Automation, azure, identity not found, managed identity, MicrosoftSecurity, Policy, role assignment, security, unknown

Automate Reporting of Defender for Cloud recommendations & Role Assignments with 35 different views

23/04/202301/02/2023 by Morten Knudsen

Background Recently, I was asked to build a simple reporting-script, which integrates data from Microsoft Defender for Cloud and Azure …

Read more

Tags azure, Defender, DefenderForCloud, MDC, MicrosoftSecurity, security

How to do a Password Audit of your Active Directory passwords using DSInternals?

27/12/202227/12/2022 by Morten Knudsen

Great job Michael Grafnetter Initially, I would like to thank the author of DSInternals, Microsoft MVP Michael Grafnetter, for creating …

Read more

Tags Active Directory, ActiveDirectory, AD, DSInternals, M365 Security, M365Security, MicrosoftSecurity, Password Audit, PasswordAudit

How to detect File Deletions using Audit-data (SecurityEvent) & Azure LogAnalytics ?

27/12/202224/12/2022 by Morten Knudsen

Recently I was asked to provide a solution to detect file deletions on a file server in a sensitive folder …

Read more

Tags audit, azure, Delete, File, File Deletion, Loganalytics, MicrosoftSecurity, securityevent

About | Morten Knudsen

Dual Microsoft MVP (Security & Azure)

Microsoft Certified Trainer

Cloud & Security Architect

Microsoft Sentinel Black Belt

Microsoft Defender Black Belt

Microsoft Cloud Security Influencer

Microsoft Sentinel Influencer

Microsoft Defender for Cloud Influencer

Recent Posts

  • How to authenticate with Windows Hello for Business or FIDO security key in RDP session ?
  • Windows Service Monitoring at Scale using Cloud Native Azure Components
  • Troubleshooting & Monitoring of Log Ingestion with Data Collection Rules
  • Optimize Costs using Auxiliary Logs for Verbose Logging
  • “No Internet access” on Azure VM in new VNET Subnet
Tweets by knudsenmortendk
  • Privacy Policy
  • Terms
  • Contact
© 2025 Blog by Morten Knudsen about Microsoft Security, Azure, M365 & Automation • Built with GeneratePress