Microsoft Sentinel
Cloud and workloads

Configure Interactive and Long-term Data Retention in Microsoft Sentinel

In brief

The article updates its title and metadata, links the UEBA reference to the deployment guide, and reformats the post-deployment next-step link.

What Defender admins need to know

Administrators can follow the deployment and post-deployment guidance more easily. No action is required.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.


title: Configure interactiveInteractive and long-Long-term data retentionData Retention in Microsoft Sentinel description: Towards the end of your deployment procedure, you set up data retention to suit your organization's needs. ms.author: edbaynash author: EdB-MSFT ms.reviewer: krishsa ms.topic: how-to ms.date: 07/21/202401/2026 ai-usage: ai-assisted ms.custom: msecd-doc-authoring-1016

#Customer intent: As a security architect or SOC manager, I want to configure data retention and archiving policies so that I can ensure long-term storage of important data at a reduced cost.

Configure interactive and long-term data retention in Microsoft Sentinel

In the previousEnable UEBA step of the deployment step,guide, you enabled the User and Entity Behavior Analytics (UEBA) feature to streamline your analysis process. In this article, you learn how to set up interactive and long-term data retention, to make sure your organization retains the data that's important in the long term. This article is part of the Deployment guide for Microsoft Sentinel.

Configure data retention

Next stepsstep

In this article, you learned how to set up interactive and long-term data retention.

[!div class="nextstepaction"]

Perform post-deployment steps \ No newline at end of file Perform post-deployment steps \ No newline at end of file