Skip to content

Detection Engineering

Five default Microsoft Sentinel analytics rules that generate noise: brute force, impossible travel, password spray, unfamiliar location, and Fusion alerts

5 Default Sentinel Rules That Generate Nothing But Noise (And What We Replace Them With)

Five default Microsoft Sentinel analytics rules that generate the most false positives, and what Falconer Security replaces them with.
Read More
Managed Microsoft Sentinel maintenance lifecycle showing four phases: assess, tune, expand, optimize

Managed Sentinel Maintenance: What the First 12 Months Actually Look Like

What managed Microsoft Sentinel maintenance looks like month by month. Detection tuning, cost optimization, threat hunting, and reporting.
Read More