SC-5001 : Configure SIEM Security Operations using Microsoft Sentinel
Length: 1 Day(s) Cost:$895 + GST
= Scheduled class
= Guaranteed to run
= Fully booked
Click on the date to book online
Please wait as we are loading the schedules...
LOCATION | December | January | February | March |
---|---|---|---|---|
Auckland | ||||
Hamilton | ||||
Christchurch | ||||
Wellington | ||||
Virtual Class |
Get started with Microsoft Sentinel security operations by configuring the Microsoft Sentinel workspace, connecting Microsoft services and Windows security events to Microsoft Sentinel, configuring Microsoft Sentinel analytics rules, and responding to threats with automated responses.
- Security Engineers
- Security Operations Analysts
- Fundamental understanding of Microsoft Azure
- Basic understanding of Microsoft Sentinel
- Experience using Kusto Query Language (KQL) in Microsoft Sentinel
After completing this course, students will be able to:
- Describe Microsoft Sentinel workspace architecture
- Install Microsoft Sentinel workspace
- Create and configure a Microsoft Sentinel workspace
- Connect Microsoft service connectors
- Explain how connectors auto-create incidents in Microsoft Sentinel
- Connect Azure Windows Virtual Machines to Microsoft Sentinel
- Connect non-Azure Windows hosts to Microsoft Sentinel
- Configure Log Analytics agent to collect Sysmon events
- Explain the importance of Microsoft Sentinel Analytics
- Create rules from templates
- Create new analytics rules and queries using the analytics rule wizard
- Manage rules with modifications
- Explain automation options in Microsoft Sentinel
- Create automation rules in Microsoft Sentinel
- Deploy Microsoft Sentinel Content Hub solutions and data connectors
- Configure Microsoft Sentinel Data Collection rules, NRT Analytic rule and Automation
- Perform a simulated attack to validate Analytic and Automation rules
- Create and manage Microsoft Sentinel workspaces
- Connect Microsoft services to Microsoft Sentinel
- Connect Windows hosts to Microsoft Sentinel
- Threat detection with Microsoft Sentinel analytics
- Automation in Microsoft Sentinel
- Configure SIEM security operations using Microsoft Sentinel