Skip to content

Commit 62bc620

Browse files
committed
Acrolinx score 84
1 parent 0da7f33 commit 62bc620

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

articles/sentinel/kusto-resources.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@ ms.author: yelevin
1313

1414
# Useful resources for working with Kusto Query Language in Microsoft Sentinel
1515

16-
Microsoft Sentinel uses Azure Monitor's Log Analytics environment and the Kusto Query Language (KQL) to build the queries that undergird much of Sentinel's functionality, from analytics rules to workbooks to hunting. This article lists resources that can help you skill up in working with Kusto Query Language, which will give you more tools to work with Microsoft Sentinel, whether as a security engineer or analyst.
16+
Microsoft Sentinel uses Azure Monitor's Log Analytics environment and the Kusto Query Language (KQL) to build the queries that undergird much of its functionality, from analytics rules to workbooks to hunting. This article lists resources that can help you skill-up in working with Kusto Query Language, giving you more tools to work with Microsoft Sentinel, whether as a security engineer or analyst.
1717

1818
## Microsoft technical resources
1919

@@ -46,7 +46,7 @@ Microsoft Sentinel uses Azure Monitor's Log Analytics environment and the Kusto
4646
- [Azure Sentinel correlation rules: Active Lists out, make_list() in: the AAD/AWS correlation example](https://techcommunity.microsoft.com/t5/microsoft-sentinel-blog/azure-sentinel-correlation-rules-active-lists-out-make-list-in/ba-p/1029225)
4747
- [Azure Sentinel correlation rules: the join KQL operator](https://techcommunity.microsoft.com/t5/microsoft-sentinel-blog/azure-sentinel-correlation-rules-the-join-kql-operator/ba-p/1041500)
4848
- [Implementing Lookups in Azure Sentinel](https://techcommunity.microsoft.com/t5/microsoft-sentinel-blog/implementing-lookups-in-azure-sentinel/ba-p/1091306)
49-
- [Approximate, partial and combined lookups in Azure Sentinel](https://techcommunity.microsoft.com/t5/microsoft-sentinel-blog/approximate-partial-and-combined-lookups-in-azure-sentinel/ba-p/1393795)
49+
- [Approximate, partial, and combined lookups in Azure Sentinel](https://techcommunity.microsoft.com/t5/microsoft-sentinel-blog/approximate-partial-and-combined-lookups-in-azure-sentinel/ba-p/1393795)
5050

5151
### Training and skilling resources
5252
- [Rod Trent's Must Learn KQL series](https://github.com/rod-trent/MustLearnKQL)

0 commit comments

Comments
 (0)