SC-200: Perform threat hunting in Microsoft Sentinel
- Offered byMicrosoft
SC-200: Perform threat hunting in Microsoft Sentinel at Microsoft Overview
Duration | 3 hours |
Total fee | Free |
Mode of learning | Online |
Schedule type | Self paced |
Difficulty level | Intermediate |
Official Website | Explore Free Course |
Credential | Certificate |
SC-200: Perform threat hunting in Microsoft Sentinel at Microsoft Course details
- Proactively hunt for security threats using the Microsoft Sentinel powerful threat hunting tools
- This learning path aligns with exam SC-200: Microsoft Security Operations Analyst
- In this program, you'll learn to proactively identify threat behaviors by using Microsoft Sentinel queries
- In Microsoft Sentinel, you can search across long time periods in large datasets by using a search job
SC-200: Perform threat hunting in Microsoft Sentinel at Microsoft Curriculum
Explain threat hunting concepts in Microsoft Sentinel
Introduction
Understand cybersecurity threat hunts
Develop a hypothesis
Explore MITRE ATT&CK
Knowledge check
Summary and resources
Threat hunting with Microsoft Sentinel
Introduction
Exercise setup
Explore creation and management of Microsoft Sentinel threat-hunting queries
Save key findings with bookmarks
Observe threats over time with livestream
Exercise - Hunt for threats by using Microsoft Sentinel
Summary
Use Search jobs in Microsoft Sentinel
Introduction
Hunt with a Search Job
Restore historical data
Knowledge check
Summary and resources
Hunt for threats using notebooks in Microsoft Sentinel
Introduction
Access Azure Sentinel data with external tools
Hunt with notebooks
Create a notebook
Explore notebook code
Knowledge check
Summary and resources