SC-5001 : Configure SIEM Security Operations using Microsoft Sentinel

Length: 1 Day(s)     Cost:$895 + GST

= Scheduled class     = Guaranteed to run     = Fully booked

Click on the date to book online
Please wait as we are loading the schedules...
LOCATION October November December January
Auckland
Hamilton
Christchurch
Wellington
Virtual Class

Get started with Microsoft Sentinel security operations by configuring the Microsoft Sentinel workspace, connecting Microsoft services and Windows security events to Microsoft Sentinel, configuring Microsoft Sentinel analytics rules, and responding to threats with automated responses.


  • Security Engineers
  • Security Operations Analysts

  • Fundamental understanding of Microsoft Azure
  • Basic understanding of Microsoft Sentinel
  • Experience using Kusto Query Language (KQL) in Microsoft Sentinel

After completing this course, students will be able to:

  • Describe Microsoft Sentinel workspace architecture
  • Install Microsoft Sentinel workspace
  • Create and configure a Microsoft Sentinel workspace
  • Connect Microsoft service connectors
  • Explain how connectors auto-create incidents in Microsoft Sentinel
  • Connect Azure Windows Virtual Machines to Microsoft Sentinel
  • Connect non-Azure Windows hosts to Microsoft Sentinel
  • Configure Log Analytics agent to collect Sysmon events
  • Explain the importance of Microsoft Sentinel Analytics
  • Create rules from templates
  • Create new analytics rules and queries using the analytics rule wizard
  • Manage rules with modifications
  • Explain automation options in Microsoft Sentinel
  • Create automation rules in Microsoft Sentinel
  • Deploy Microsoft Sentinel Content Hub solutions and data connectors
  • Configure Microsoft Sentinel Data Collection rules, NRT Analytic rule and Automation
  • Perform a simulated attack to validate Analytic and Automation rules

  • Create and manage Microsoft Sentinel workspaces
  • Connect Microsoft services to Microsoft Sentinel
  • Connect Windows hosts to Microsoft Sentinel
  • Threat detection with Microsoft Sentinel analytics
  • Automation in Microsoft Sentinel
  • Configure SIEM security operations using Microsoft Sentinel