Book

Microsoft Sentinel in Action

Use Microsoft’s own intelligent security service that brings together cloud security and AI to protect your organization. Microsoft Sentinel in Action will help you to gain enough understanding to make the most of Azure services and secure your environment against modern cybersecurity threats.

Offered byPackt Logo

Difficulty Level

Intermediate

Completion Time

15h56m

Language

English

About Book

Who Is This Book For?

You’ll get the most out of this book if you have a good grasp on other Microsoft security products and Azure, and are now looking to expand your knowledge to incorporate Microsoft Sentinel. Security experts who use an alternative SIEM tool and want to adopt Microsoft Sentinel as an additional or a replacement service will also find this book useful.

Book content

chapters 15h56m total length

Getting started with Microsoft Sentinel

Azure Monitor-Introduction to Log Analytics

Managing and collecting data

Integrating Threat Intelligence with Microsoft Sentinel

Using the Kusto Query Language

Microsoft Sentinel Logs and Writing Queries

Creating Analytic Rules

Creating and Using Workbooks

Incident Management

Configuring and Using Entity Behavior

Threat Hunting in Microsoft Sentinel

Creating Playbooks and Automation

ServiceNow integration for Alert and Case Management

Operational Tasks for Microsoft Sentinel

Constant Learning and Community Contribution

Related Resources

Access Ready-to-Use Books for Free!

Get instant access to a library of pre-built books—free trial, no credit card required. Start training your team in minutes!

No credit card required