SC-5001 : Applied Skill : Configure SIEM security operations using Microsoft Sentinel

SC-5001 : Applied Skill : Configure SIEM security operations using Microsoft Sentinel


  Intermediate

Regular Price : $600.00
Offer Price :$300.00

Course Overview

In this applied skill you’ll get start with Microsoft Sentinel security operations by configuring the Microsoft Sentinel workspace, connecting Microsoft services and Windows security events to Microsoft Sentinel, configuring Microsoft Sentinel analytics rules, and responding to threats with automated responses.

What is Microsoft Applied Skills?
Microsoft Applied Skills for instructor-led training is a 1-day credential designed to support learners who wish to gain one skill, aligned to scenarios or projects. 

Course Outline

Create and manage Microsoft Sentinel workspaces
Connect Microsoft services to Microsoft Sentinel
Connect Windows hosts to Microsoft Sentinel
Threat detection with Microsoft Sentinel analytics
Automation in Microsoft Sentinel

Course Objectives

  • Describe Microsoft Sentinel workspace architecture
  • Install Microsoft Sentinel workspace
  • Manage a Microsoft Sentinel workspace
  • Install solutions from the content hub
  • Connect Microsoft services data connectors
  • Explain how connectors auto-create incidents in Microsoft Sentinel
  • Connect Azure Windows Virtual Machines to Microsoft Sentinel
  • Connect non-Azure Windows hosts to Microsoft Sentinel
  • Configure Log Analytics agent to collect Sysmon events
  • Explain the importance of Microsoft Sentinel Analytics
  • Explain different types of analytics rules
  • Create rules from templates
  • Create new analytics rules and queries using the analytics rule wizard
  • Manage rules with modifications
  • Explain automation options in Microsoft Sentinel
  • Create automation rules in Microsoft Sentinel

Pre-requisites

Fundamental understanding of Microsoft Azure
Basic understanding of Microsoft Sentinel
Experience using Kusto Query Language (KQL) in Microsoft Sentinel

For any custom schedule, please email us at info@gtechlearn.com or Call us at 1-844-355-9898(Toll Free - North America) or 1800 309 9898 (Toll Free - India)


This course includes:

  • Official MS Learn Courseware
  • Exam Preps
  • Achievement Badge from Microsoft
  • Course Completion Certificate
  • Post Training Support
  • Experienced & Certified Instructors
  • Train from AnyWhere
  • Interactive Hands-On Labs
  • Personalized Learning Plans
  • Flexible Scheduling
  • Accredited Training
  • Cost-Effective Pricing

  • Need an expert opinion? Contact us today!    CONTACT US NOW