

Only analytic and hunting rules will need to be saved directly in each customer's tenant.
#VIEW MONIT LOGS CODE#


Ensures data isolation, since data for multiple customers isn't stored in the same workspace.Supports requirements to store data within geographical boundaries.Ownership of data remains with each managed tenant.This model of centralized management has the following advantages: Similarly, enterprises with multiple Azure AD tenants may want to centrally manage multiple Microsoft Sentinel workspaces deployed across their tenants. Architectural considerationsįor a managed security service provider (MSSP) who wants to build a Security-as-a-Service offering using Microsoft Sentinel, a single security operations center (SOC) may be needed to centrally monitor, manage, and configure multiple Microsoft Sentinel workspaces deployed within individual customer tenants. However, you can't delegate resources across a national cloud and the Azure public cloud, or across two separate national cloud. You can manage delegated resources that are located in different regions.
