RunAs Radio cover image

RunAs Radio

Querying for Breaches with Mark Morowcyznski

Jan 29, 2025
Mark Morowczynski, a Principal Security Researcher at Microsoft and co-author of 'The Definitive Guide to KQL,' dives deep into the world of Kusto Query Language. He explains how KQL can transform log data into actionable insights for security monitoring. They discuss rising cybersecurity threats and the importance of practical improvements like phishing-resistant authentication. With examples from the book, Mark highlights querying techniques to spot unusual account activity and ensure operational excellence. Don't miss tips on harnessing data analytics for enhanced security!
34:07

Podcast summary created with Snipd AI

Quick takeaways

  • Mastering Kusto Query Language (KQL) empowers IT professionals to transform raw data into actionable intelligence for enhanced security operations.
  • The podcast emphasizes the need for robust security measures, such as MFA and continuous improvement, to counter rising cybersecurity threats.

Deep dives

The Importance of KQL in Security Operations

Kusto Query Language (KQL) serves as a crucial tool in enhancing security operations within Microsoft environments. It allows users to query various data sources such as Azure and M365, enabling them to gather insights relevant to security incidents and system performance. For instance, KQL can be used to check whether conditional access policies are applied correctly, helping organizations identify gaps in their security measures. By mastering KQL, IT professionals can transform raw data into actionable intelligence, ultimately strengthening their security posture.

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode