Automating Threat Response with Microsoft Sentinel

By Daniel Krzyczkowski

This course explores how to use Microsoft Sentinel to collect security insights, detect and investigate threats, and automate threat responses.

1.3 hours
  • 11 Lessons

About the course

In this course, Automating Threat Response with Microsoft Sentinel, you’ll learn what Microsoft Sentinel is and how it can help enable end-to-end security operations. First, you’ll explore Microsoft Sentinel’s core features and concepts. Next, you’ll examine how to configure Microsoft Sentinel to connect to your data and perform the necessary investigations. Finally, you’ll discover how to use Microsoft Sentinel to detect threats and automate your threat response. When you’re finished with this course, you’ll have the skills and knowledge needed to collect security insights, detect and investigate threats, and automate responses to those threats with Microsoft Sentinel.

  • Chapter 1 11 Lessons Introduction 1:16:04

    Course Introduction

    1:47

    Scenario and Problem Statement

    2:40

    Introduction to Microsoft Sentinel

    7:02

    Demo: Configure Microsoft Sentinel

    5:58

    Demo: Configure Data Connectors

    9:38

    Demo: Investigate Ingested Logs

    5:28

    Demo: Generate Sign-In Risk Events

    4:23

    Demo: Create Analytics Rules

    13:08

    Demo: Prepare Automated Response Actions

    10:23

    Demo: Automate Threat Response with Playbooks

    14:48

    Course Summary

    0:49

Practice alongside courses in Cloud Playground

What is Cloud Playground? Cloud Playground lets you build skills in real-world AWS, Google Cloud, and Azure environments. Spin up risk-free Sandboxes, Servers and Terminals and follow along with courses, test a new idea or prepare for exams.

Get Started
Who’s going to be learning?
Sign In
Welcome Back!

Psst…this one if you’ve been moved to ACG!