What is Microsoft Sentinel used for?
The platform centralizes security monitoring across Microsoft 365, Entra ID, Azure, and endpoint environments. It collects and correlates logs, applies analytics rules and ML-based detection to surface threats, and provides an incident investigation workflow for your security team. SOAR automation through Logic Apps handles initial triage and containment steps for common alert types.
