Skip to content
Blog by Morten Knudsen about Microsoft Security, Azure, M365 & Automation
  • Blog Posts
  • Blog Posts by Category
  • Github Repo
  • Speaks & Events
  • Experts Live Denmark
  • Pictures
    • Pictures Microsoft
    • Pictures Tech Peers
  • About | Morten
    • Contact
    • Disclaimer

Blog by Morten Knudsen about Microsoft Security, Azure, M365 & Automation

  • Blog Posts
  • Blog Posts by Category
  • Github Repo
  • Speaks & Events
  • Experts Live Denmark
  • Pictures
    • Pictures Microsoft
    • Pictures Tech Peers
  • About | Morten
    • Contact
    • Disclaimer

MicrosoftSecurity

Troubleshooting & Monitoring of Log Ingestion with Data Collection Rules

18/09/202414/09/2024 by Morten Knudsen

As I have outlined in the series of blogs, Azure Logging is based on Data Collection Rules (DCRs) and Azure …

Read more

Tags azure, Loganalytics, Logging, MicrosoftSecurity, security, Sentinel

Orphaned Azure Security Principals Clean-up & Azure Policy Managed Identity Role Assignment Automation

06/02/202306/02/2023 by Morten Knudsen

This blog covers 2 topics : (1) how you can automate clean-up of any orphaned security principal role assignments – …

Read more

Tags Automation, azure, identity not found, managed identity, MicrosoftSecurity, Policy, role assignment, security, unknown

Automate Reporting of Defender for Cloud recommendations & Role Assignments with 35 different views

23/04/202301/02/2023 by Morten Knudsen

Background Recently, I was asked to build a simple reporting-script, which integrates data from Microsoft Defender for Cloud and Azure …

Read more

Tags azure, Defender, DefenderForCloud, MDC, MicrosoftSecurity, security

How to do a Password Audit of your Active Directory passwords using DSInternals?

27/12/202227/12/2022 by Morten Knudsen

Great job Michael Grafnetter Initially, I would like to thank the author of DSInternals, Microsoft MVP Michael Grafnetter, for creating …

Read more

Tags Active Directory, ActiveDirectory, AD, DSInternals, M365 Security, M365Security, MicrosoftSecurity, Password Audit, PasswordAudit

How to detect File Deletions using Audit-data (SecurityEvent) & Azure LogAnalytics ?

27/12/202224/12/2022 by Morten Knudsen

Recently I was asked to provide a solution to detect file deletions on a file server in a sensitive folder …

Read more

Tags audit, azure, Delete, File, File Deletion, Loganalytics, MicrosoftSecurity, securityevent

About | Morten Knudsen

Triple Microsoft MVP (Security, Azure & Security Copilot)

Microsoft Certified Trainer (1999-2025)

Cloud & Security Architect

Blogger aka.ms/morten

Public speaker

Mentor

Co-founder Experts Live Denmark

Board Member Experts Live Global

  • LinkedIn
  • Bluesky
  • Twitter
  • Mail

Recent Posts

  • Modern Outlook/Teams fails with WebView2 error – seen on Win11 ARM
  • Script: Sentinel Data Lake Table Management
  • How to Enforce Macro Security by running only Excel macros signed with your own public-CA–issued code-signing certificate – stored in Azure Keyvault (HSM)
  • How to Block Upload to WeTransfer, DropBox & Google Drive (but Allowing Download) – using Microsoft Purview Data Loss Prevention (DLP)
  • Tutorial: Integrate AI into your Powershell scripts
Tweets by knudsenmortendk
  • Privacy Policy
  • Terms
  • Contact
© 2025 Blog by Morten Knudsen about Microsoft Security, Azure, M365 & Automation • Built with GeneratePress