No Result
View All Result
  • Login
Monday, February 9, 2026
FeeOnlyNews.com
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading
No Result
View All Result
FeeOnlyNews.com
No Result
View All Result
Home Market Analysis

Drowning In Security Data Costs? You Get A Data Lake

by FeeOnlyNews.com
7 months ago
in Market Analysis
Reading Time: 3 mins read
A A
0
Drowning In Security Data Costs? You Get A Data Lake
Share on FacebookShare on TwitterShare on LInkedIn


A common client request I’ve gotten over the past several years is how to best manage growing data costs in the security information and event management (SIEM) system. For most, it requires a strategic approach to storing and accessing the data; either use cold/frozen storage, separate analytics, and ingest using a data cloud like Snowflake; or use a data pipeline management tool to reduce data volumes and potentially route it to a lower cost storage option. Since Amazon Security Lake popped onto the scene in 2023, many have used it as a low-cost option to store long-term data in the Open Cybersecurity Schema Framework for easy access. Other vendors have also introduced storage solutions for low-cost, long-term data storage (e.g., Cribl Lake), which can be especially useful if you are already using the tool for data routing.

Data, Data Everywhere, And No Perfect Solution

Still, security data management issues have persisted. In The Forrester Wave™: Security Analytics Platforms, Q4 2022, one piece of customer feedback Microsoft Sentinel customers gave was that the offering is costly because its pricing model is based on the volume of data ingested and predicting costs can be difficult. Similar concerns came up across vendors in the recently-released update of that report, The Forrester Wave™: Security Analytics Platforms, Q2 2025. Although it’s not the only SIEM system in which customers have had this challenge, it’s the one we are talking about today, as Microsoft just announced the Microsoft Sentinel Data Lake.

Microsoft Takes The Data Lake Plunge

Microsoft Sentinel Data Lake is now a feature of Microsoft Sentinel, providing a low-cost data storage option that is still accessible in the platform. In a major architectural change, it shifts the platform to having two data tiers: the analytics tier (more expensive, used for detections, investigation, etc.) and the data lake tier for long-term storage.

According to Microsoft, data retention in the data lake tier is priced at less than 15% of its traditional analytics logs. You can still access the data in the data tier using KQL and create retrohunts (scheduled or otherwise) across the data that promote the data into the analytics tier (for a fee, of course). Users can also interact with the data using the Microsoft Sentinel Visual Studio Code extension and PySpark. This can aid better data exploration through Jupyter notebooks, a pivotal change that speaks to users’ growing need to have better control and understanding of their data for detection engineering.

Carry Your Own Water To Learn The Value Of Every Drop

An African proverb says, “Once you carry your own water, you will learn the value of every drop.” This also applies to security data. Even with a security data lake like Microsoft Sentinel Data Lake, you still need to be strategic with the data you bring into the platform. Before this, we saw some customers make sacrifices with the data they ingested into Sentinel versus the data they put into Azure Log Analytics so they could have that long-term storage accessible in some form. This simplifies the equation by giving an option in which long-term data is made to be used and potentially promoted in Sentinel directly. It’s still critical to decide what data you need immediately for detection and response versus what data should be stored long term for access for compliance and threat hunting.

But Wait, There’s More

Another part of the Microsoft announcement that may have slipped under the radar is that Microsoft Defender Threat Intelligence will be converged into Defender XDR and Sentinel at no additional cost, starting in October 2025. This is in line with changes from Cisco Splunk, which now integrates Cisco Talos threat intelligence into the enterprise security license for free. It’s also in line with much of the security industry’s evolution to a platform approach.

Let’s Connect

To discuss your options and strategize on how to make the best use out of these announcements, set up a guidance session or inquiry with me.

I’ll also be speaking at Forrester’s Security & Risk Summit 2025 in Austin, Texas, from November 5–7.



Source link

Tags: CostsdataDrowningLakeSecurity
ShareTweetShare
Previous Post

10 Things That Instantly Reveal You’re Not Ready for Retirement

Next Post

Why More Seniors Are Seeking Therapy in Secret

Related Posts

Why “Context Lake” Matters For Agentic AI

Why “Context Lake” Matters For Agentic AI

by FeeOnlyNews.com
February 8, 2026
0

In mid‑January, a new arXiv paper introduced Context Lake as a system class for AI-era decision-making. The paper argues that...

1 Stock to Buy, 1 Stock to Sell This Week: Cisco, Moderna

1 Stock to Buy, 1 Stock to Sell This Week: Cisco, Moderna

by FeeOnlyNews.com
February 8, 2026
0

U.S. jobs report, CPI inflation data, retail sales, and more earnings will be in focus this week. Cisco is projected...

The Revenue Enablement Platform Market Has Hit an Inflection Point, With AI Re-shaping Everything

The Revenue Enablement Platform Market Has Hit an Inflection Point, With AI Re-shaping Everything

by FeeOnlyNews.com
February 7, 2026
0

Revenue enablement is entering one of the most consequential transformation periods we’ve seen since the function emerged. In our newly...

Four Hacks To Reduce Enablement Anxiety

Four Hacks To Reduce Enablement Anxiety

by FeeOnlyNews.com
February 6, 2026
0

One of our most common revenue enablement customer requests equates to the blog title. It’s often delivered under the guise...

Trust Is The Brand Principle That Health Insurers Can’t Afford To Ignore

Trust Is The Brand Principle That Health Insurers Can’t Afford To Ignore

by FeeOnlyNews.com
February 6, 2026
0

Health insurers are out of excuses. Congress has joined the growing chorus calling out the widening gap between what insurers promise...

4 Resilient Sectors and Stocks to Watch If the Tech Selloff Returns

4 Resilient Sectors and Stocks to Watch If the Tech Selloff Returns

by FeeOnlyNews.com
February 6, 2026
0

Megacap tech giants and software stocks are crashing amid a violent selloff. While growth-heavy tech has been hammered, several sectors...

Next Post
Why More Seniors Are Seeking Therapy in Secret

Why More Seniors Are Seeking Therapy in Secret

Main takeaways from Philip Morris’ (PM) Q2 2025 earnings report

Main takeaways from Philip Morris’ (PM) Q2 2025 earnings report

  • Trending
  • Comments
  • Latest
Self-driving startup Waabi raises up to  billion, partners with Uber to deploy 25,000 robotaxis

Self-driving startup Waabi raises up to $1 billion, partners with Uber to deploy 25,000 robotaxis

January 28, 2026
Student Beans made him a millionaire, a heart condition made this millennial founder rethink life

Student Beans made him a millionaire, a heart condition made this millennial founder rethink life

December 11, 2025
Sellers Are Accepting Even Less

Sellers Are Accepting Even Less

January 23, 2026
Inside My Algorithm: A Mintel BPC Expert’s Latest Internet Obsessions 

Inside My Algorithm: A Mintel BPC Expert’s Latest Internet Obsessions 

January 20, 2026
Will CRCL Stock Recover by the End of Jan 2026?

Will CRCL Stock Recover by the End of Jan 2026?

January 10, 2026
US SEC Issues Key Crypto Custody Guidelines For Broker-Dealers

US SEC Issues Key Crypto Custody Guidelines For Broker-Dealers

December 19, 2025
Patient private capital is needed to help Asia plug its healthcare gaps

Patient private capital is needed to help Asia plug its healthcare gaps

0
Blavatnik picks Patrick Drahi as partner in Reshet 13

Blavatnik picks Patrick Drahi as partner in Reshet 13

0
Does Acts Show Early Christian Communism?

Does Acts Show Early Christian Communism?

0
MarketAxess Posts Record 2025 Revenue, Beats Earnings Forecasts

MarketAxess Posts Record 2025 Revenue, Beats Earnings Forecasts

0
Comcast Corporation (CMCSA) and Versant (VSNT): A Bull Case Theory

Comcast Corporation (CMCSA) and Versant (VSNT): A Bull Case Theory

0
Only 10K Bitcoin is Quantum-Vulnerable and Worth Attacking

Only 10K Bitcoin is Quantum-Vulnerable and Worth Attacking

0
Positive Breakout: These 12 stocks close above their 200 DMAs

Positive Breakout: These 12 stocks close above their 200 DMAs

February 8, 2026
Only 10K Bitcoin is Quantum-Vulnerable and Worth Attacking

Only 10K Bitcoin is Quantum-Vulnerable and Worth Attacking

February 8, 2026
Nifty likely to stay firm, 26,000–26,300 key hurdle: Analysts

Nifty likely to stay firm, 26,000–26,300 key hurdle: Analysts

February 8, 2026
Why “Context Lake” Matters For Agentic AI

Why “Context Lake” Matters For Agentic AI

February 8, 2026
Patient private capital is needed to help Asia plug its healthcare gaps

Patient private capital is needed to help Asia plug its healthcare gaps

February 8, 2026
I grew up in the 70s and didn’t realize these 8 childhood experiences were unusual until I talked to younger generations

I grew up in the 70s and didn’t realize these 8 childhood experiences were unusual until I talked to younger generations

February 8, 2026
FeeOnlyNews.com

Get the latest news and follow the coverage of Business & Financial News, Stock Market Updates, Analysis, and more from the trusted sources.

CATEGORIES

  • Business
  • Cryptocurrency
  • Economy
  • Financial Planning
  • Investing
  • Market Analysis
  • Markets
  • Money
  • Personal Finance
  • Startups
  • Stock Market
  • Trading

LATEST UPDATES

  • Positive Breakout: These 12 stocks close above their 200 DMAs
  • Only 10K Bitcoin is Quantum-Vulnerable and Worth Attacking
  • Nifty likely to stay firm, 26,000–26,300 key hurdle: Analysts
  • Our Great Privacy Policy
  • Terms of Use, Legal Notices & Disclaimers
  • About Us
  • Contact Us

Copyright © 2022-2024 All Rights Reserved
See articles for original source and related links to external sites.

Welcome Back!

Sign In with Facebook
Sign In with Google
Sign In with Linked In
OR

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading

Copyright © 2022-2024 All Rights Reserved
See articles for original source and related links to external sites.