New

Configure SIEM security operations using Microsoft Sentinel : SC-5001

Get started with Microsoft Sentinel security operations.

Upcoming sessions

No date suits you?

Notify me when a session is added.

  • Duration: 1 day
  • Regular price: $795
  • Preferential price: $675

Course outline

Duration : 1 day

© AFI Expertise inc.

Get started with Microsoft Sentinel security operations by configuring the Microsoft Sentinel workspace, connecting Microsoft services and Windows security events to Microsoft Sentinel, configuring Microsoft Sentinel analytics rules, and responding to threats with automated responses.

Audience

  • Intermediate
  • Security Operations Analyst

Prerequisites

  • Fundamental understanding of Microsoft Azure
  • Basic understanding of Microsoft Sentinel
  • Experience using Kusto Query Language (KQL) in Microsoft Sentinel

*You need to have your own Azure subscription.

You need an Azure subscription to complete the exercises. If you don't have an Azure subscription, create a free account and add a subscription before you begin. If you're a student, you can take advantage of the Azure for students offer.

Contents

  • Create and manage Microsoft Sentinel workspaces
  • Connect Microsoft services to Microsoft Sentinel
  • Connect Windows hosts to Microsoft Sentinel
  • Threat detection with Microsoft Sentinel analysis
  • Automation in Microsoft Sentinel
  • Configuring SIEM security operations using Microsoft Sentinel

Surround yourself with the best

Éric Côté
Trainer
Ralph Pierre Pelry
Trainer
Louis Major
Louis Major
Vice President, IT Strategy and trainer
Frédéric Paradis
Frédéric Paradis
Certified Trainer and Cloud Architect
As a certified Microsoft trainer, Frédéric describes himself as a Cloud magician who easily navigates the mythical space between technology and reality.