Microsoft Sentinel Gets a Data Lake Upgrade: Boosting Security and Slashing Costs by 85%
Microsoft Sentinel’s new data lake is a game-changer for security teams, offering unlimited log storage at a fraction of the cost. Described as a “forensic vault,” this integration allows for long-term data retention, breaking the 90-day barrier. Microsoft Sentinel data lake is now in public preview and aims to redefine affordability in security data management.

Hot Take:
Microsoft is taking a giant leap into the realm of data hoarding with its new data lake for Microsoft Sentinel, enabling security teams to bathe in endless pools of log files without breaking the bank. It’s like having a Costco membership for your data storage needs, where you can buy a year’s worth of security logs at 15% of the usual price and still have change for a hot dog.
Key Points:
- Microsoft Sentinel adds an integrated data lake for unlimited log storage.
- Microsoft Defender Threat Intelligence (MDTI) will soon be free and integrated with Defender XDR.
- New architecture allows security teams to store data at a fraction of the cost.
- Microsoft’s data lake supports AI models and Kusto Query Language (KQL).
- Threat intelligence integration with Sentinel and Defender enhances security analysis capabilities.
Already a member? Log in here