This 3 day hands on course helps you get ramped up with Microsoft Sentinel and provide hands-on practical experience for product features, capabilities, and scenarios.
During the course you will deploy a Microsoft Sentinel workspace and ingest pre-recorded data to simulate scenarios that showcase various Microsoft Sentinel features.
This course is aimed at IT professionals and Azure administrators that have some experience administering and configuring Azure, but want to gain an insight into implementing Microsoft’s SIEM/SOAR solution, Microsoft Sentinel.
Module 1: Overview of Microsoft Sentinel
Lessons:
Module 2: KQL
Lessons:
Module 3: Data Connectors
Lessons:
Module 4 – Analytics Rules
Lessons:
Module 5 – Incident Management
Lessons:
Module 6 – Hunting
Lessons:
Module 7 – Watchlists
Lessons:
Module 8 – Threat Intelligence
Lessons: