Skip Navigation

Azure Sentinel benefit for Microsoft 365 E5 customers

Save up to USD1500/month on a typical 3,500 seat deployment of Microsoft 365 E51 with Azure credits for up to 100MB per user/month of data ingestion into Azure Sentinel.

Integrated threat protection with SIEM and XDR

With security information and event management (SIEM) and extended detection and response (XDR) from Microsoft, you are armed with the context and automation you need to stop sophisticated, cross-domain attacks across your entire organisation. Microsoft 365 E5 and Microsoft 365 E5 Security customers can get Azure credits towards up to 100MB per user/month of Microsoft 365 data ingestion into Azure Sentinel.

  • Comprehensive security

    Get end-to-end visibility across your resources, including users, devices, applications and infrastructure.

  • Detect advanced threats

    Defend against modern attacks with SIEM and XDR capabilities, powered by AI.

  • Investigate prioritised incidents

    Surface critical incidents and hunt suspicious activities at scale.

  • Enable efficient and effective response

    Respond to incidents rapidly with built-in orchestration and automation of common tasks.

Offer details

From November 1, 2020 through December 1, 2021, Microsoft 365 E5 and Microsoft 365 E5 Security customers can receive a data grant of up to 100 MB per user/month to ingest Microsoft 365 data. The data sources included in this offer include:

  • Azure Active Directory (Azure AD) sign-in and audit logs
  • Microsoft Cloud App Security shadow IT discovery logs
  • Microsoft Information Protection logs
  • Microsoft 365 advanced hunting data (including Microsoft Defender for Endpoint logs)

The data grant will be offered in the form of Azure credits covering the cost of up to 100 MB of data ingestion per user/month. The Azure credits can be used to ingest data into Azure Sentinel or to explore other Azure services. These credits will be calculated at the end of the month and applied to your bill for the subsequent month automatically if the credit amount is greater than the minimum credit of USD10.

With this benefit, a standard 3,500 seat deployment can see estimated savings of up to USD1,500 per month1.

In addition to the this data grant, the following Microsoft 365 data sources are always free for all Azure Sentinel users as an ongoing Azure Sentinel benefit:

  • Azure Activity Logs
  • Office 365 Audit Logs (all SharePoint activity and Exchange admin activity)
  • Alerts from Microsoft Defender products (Azure Defender, Microsoft 365 Defender, Microsoft Defender for Office 365, Microsoft Defender for Identity, Microsoft Defender for Endpoint), Azure Security Center, Microsoft Cloud App Security and Azure Information Protection.

1Calculation based on pay-as-you-go prices for Azure Sentinel and Azure Monitor Log Analytics for US East region.

Offer eligibility

This data grant is available to Microsoft 365 E5 and Microsoft 365 E5 Security customers who have Enterprise (EA) or Enterprise Subscription (EAS) Agreements and Enrollments. New Microsoft 365 E5 or Microsoft 365 E5 Security customers are also qualified for this data grant. Once a customer becomes eligible, they will begin accruing credits starting with their first month of eligibility during the offer period.

This offer is available from November 2020 through December 1, 2021. All participating customers, regardless of when they became eligible, will stop receiving the benefit once the promotion ends.

Get started

Ready to get started on comprehensive protection with Microsoft 365 and Azure Sentinel? Just start ingesting Microsoft 365 data into Azure Sentinel and your Microsoft 365 E5 or Microsoft 365 E5 Security data grant will apply automatically, with no additional sign-up required. Get started now and see firsthand what you can do with integrated SIEM and XDR.