Implementing and Administering Microsoft Sentinel
Get 20% off all career paths from fullstack to AI
AI, Data Science & Cloud Certificates from Google, IBM & Meta
Overview
Google, IBM & Meta Certificates – 40% Off
One plan covers every Professional Certificate on Coursera.
Unlock All Certificates
Learn how to implement and administer Azure Sentinel, a cloud-native security event and information management (SEIM) system that detects threats while automating threat responses.
Syllabus
Introduction
- Need a central point of analysis for security events?
- What you should know
- Lab setup
- Sentinel feature flyover
- Onboarding Microsoft Sentinel
- Kusto query language quickstart
- Connecting Microsoft services
- Connecting external services
- Integrating threat intelligence
- Detecting threats
- Investigating incidents
- Responding to threats using automation
- Security orchestration, automation, and response (SOAR)
- UEBA and machine learning
- Threat hunting basics
- Hunting with bookmarks
- Hunting with notebooks
- Workbooks and dashboards
- Integrating with Microsoft Defender and Purview
- Next steps
Taught by
Pete Zerger