Session

Automating Microsoft Sentinel: A Practical DevSecOps Pipeline with GitHub Actions

Modern SOC teams operate under constant pressure to deliver secure, consistent, and production‑ready deployments at scale. Manual Sentinel setup no longer meets these expectations — automation does.
In this session, we’ll show how to build a fully automated, enterprise‑grade Microsoft Sentinel deployment pipeline using GitHub Actions and Infrastructure‑as‑Code.
Through a live, practical demo, you’ll see how Bicep modules, secured workflows, PR‑driven governance, and automated rollout of analytics rules, playbooks, workbooks, and automation rules come together into a unified DevSecOps model.
The entire workflow is based on proven MDR production patterns — giving you a reusable blueprint for your own SOC or MSSP automation journey.

Uros Babic

Lead Product Engineer - Microsoft Security DevOps at Global CoE SoftwareOne team, Microsoft Security MVP, MCT

Belgrade, Serbia

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top