Session

Secure Logstash connections to Microsoft Sentinel with 'Rot8r' 🤖

Logstash is a great tool for working with logs and can act as a very robust and versatile log collector for Microsoft Sentinel. But many companies struggle to optimize and secure their log ingestion flows. In this session I will explain (and demo!) everything regarding ingesting DCR-based custom logs with Logstash. As well as how to implement a fully automated and secure key rotation mechanism with my custom tool, I named "Rot8r".
So no more handing out workspace IDs and keys or storing passwords in plain text inside your Logstash instances! 👌🏻🔐

Koos Goossens

Microsoft Security MVP | Cloud & Security Consultant @ Wortell

Maurik, The Netherlands

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top