Leveraging Defender XDR & Sentinel Automations

As threats increasingly target identities, speed and consistency of response are critical. In this session, we’ll explore how Microsoft Defender XDR and Microsoft Sentinel can work together to automate high‑impact security actions—specifically disabling compromised user accounts and revoking active user sessions in near real time.

Attendees will learn how to leverage detection signals from Defender XDR and orchestrate automated response workflows in Sentinel to contain identity‑based attacks such as phishing, token theft, and account takeover. We’ll walk through practical automation patterns that reduce manual effort, shorten attacker dwell time, and enforce consistent response across the environment.

Key takeaways:

  • Learn how to use Defender XDR signals to detect identity attacks

  • See how Sentinel automates responses to phishing and account takeovers

  • Apply automation patterns that save time and stop attackers faster

Whether you’re looking to mature your SOAR strategy or operationalize Zero Trust principles, this webinar will demonstrate how automation can transform identity protection from reactive to proactive.

Speaker Details

Micah Linehan

Sr. Security Solutions Engineer

Event Topic

Security, Zero Trust

Relevant Audiences

All Education
Leveraging Defender XDR & Sentinel Automations
Event Type
Virtual / Online
Event Subtype
Webinar / Webcast
When
Tue, May 05, 2026 | 1:00 pm ET
Registration Cost
Complimentary
Website
Click here to view event website
Sponsor
Microsoft (MSFT)
Organizer