logo

Microsoft Integrates Data Lake With Sentinel SIEM

ID: 23132bbd-d38b-54c3-b8a3-a2e6da5b7032

STIX ID: report--23132bbd-d38b-54c3-b8a3-a2e6da5b7032

Feed Name: Dark Reading

Date Published: 2025-07-22

Date Updated: 2026-04-21

Author: Jeffrey Schwartz

...
...

Microsoft announced a public-preview Microsoft Sentinel data lake that consolidates security telemetry into a scalable, low-cost repository for extended retention and forensic analysis, and said it will fold Microsoft Defender Threat Intelligence into Defender XDR (and Sentinel) at no extra charge by October; the move aims to reduce storage costs, support AI and KQL-based queries, and provide integrated threat intelligence and detection capabilities comparable to other SIEM/data-lake offerings.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.