Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Coursera

Azure Security Monitoring and Operations

KodeKloud via Coursera

Overview

Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
Monitor, Detect, and Respond to Azure Threats! Build security operations skills using Azure Monitor, Defender for Cloud, and Microsoft Sentinel. Azure Security Monitoring and Operations teaches you how to gain and maintain visibility across Azure environments, detect threats, investigate security incidents, and automate response—core skills for anyone supporting cloud security operations. The course opens with Azure Monitor, where you'll configure Log Analytics workspaces, diagnostic settings, activity logs, data collection rules, and alerts to establish centralized monitoring coverage across Azure resources. In the second module, you'll use Microsoft Defender for Cloud to assess your organization's security posture. You'll work with Secure Score, security recommendations, regulatory compliance dashboards, and workload protection plans—including just-in-time VM access—to reduce exposure and prioritize remediation. The final module introduces Microsoft Sentinel, Azure's cloud-native SIEM and SOAR platform. You'll connect data sources, build workbooks for threat visibility, create analytics rules that generate incidents, investigate alerts, configure playbooks for automated response, and perform threat hunting to identify evidence of compromise. Throughout the course, practical demonstrations and scenario-based role plays give you hands-on experience investigating security alerts, prioritizing risks, and recommending remediation actions in realistic Azure environments. Who this is for: Security analysts, cloud administrators, and IT professionals who support security operations in Microsoft Azure and want to build monitoring, detection, and incident response skills.

Syllabus

  • Azure Monitor
    • This module establishes visibility through Azure Monitor, metrics, logs, Log Analytics, connected data sources, alerts, and diagnostic settings. Learners design monitoring coverage that supports operations, security investigation, and timely response.
  • Microsoft Defender for Cloud
    • This module uses Microsoft Defender for Cloud to assess security posture, apply policies, prioritize recommendations, interpret Secure Score, protect workloads, and reduce attack paths. Learners also implement just-in-time VM access and connect defensive controls to common attack stages.
  • Microsoft Sentinel
    • This module introduces cloud-native security information and event management with Microsoft Sentinel. Learners connect data sources, visualize information in workbooks, create analytics rules and incidents, automate response with playbooks, and hunt for evidence of compromise.

Taught by

Mumshad Mannambeth

Reviews

Start your review of Azure Security Monitoring and Operations

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.