Skip to main content
The XDR + SIEM module extends ContraForce with Microsoft Sentinel integration, giving you the full security operations suite.

What’s Included (on top of XDR)

  • Sentinel incident ingestion and correlation
  • Content Management System (CMS) for detection rules
  • Real-time email notifications
  • Log search and threat hunting
  • Azure Lighthouse cross-tenant management

Requirements

  • Subscription Owner access in Azure for resource deployment
  • Azure subscription with Microsoft Sentinel workspace
  • Global Administrator credentials for consent

Deployment

Deployment takes 30–45 minutes and deploys Azure resources automatically. Follow the Platform Onboarding guide and select the XDR + SIEM module. For the full deployment guide, see Sentinel Module Deployment.