Instructor

M55610A : Planning and Implementing Microsoft Sentinel (SIEM & SOAR) Training

Curriculum

Enroll in M55610A: Planning & Implementing Microsoft Sentinel (SIEM & SOAR) Training. Gain hands-on skills to secure, monitor & automate threat response.

Ratings

( 4.2 Ratings )

Live Online Classes starting on 01 January, 1970

M55610A : Planning and Implementing Microsoft Sentinel (SIEM & SOAR)

The M55610A : Planning and Implementing Microsoft Sentinel (SIEM & SOAR) course is a comprehensive 3-day program designed for IT professionals and Azure administrators. This course aims to provide in-depth knowledge and practical skills for implementing Microsoft Sentinel, Microsoft’s powerful SIEM and SOAR solution. Participants will learn about data ingestion methods, User and Entity Behaviour Analytics, and using various management and automation tools. The course covers the critical importance of KQL, methods to connect various services to Microsoft Sentinel, and how to effectively manage incidents. Key topics include threat hunting, utilizing watchlists to prioritize incidents, and integrating threat intelligence into security operations. By the end of the course, you’ll have the expertise to deploy, configure, and use Microsoft Sentinel to enhance your organization's security posture.

 

Course Overview:

This 3-day hands-on course helps you get ramped up with Microsoft Sentinel and provides practical experience with its features, capabilities, and scenarios.

During the course, you will:

  • Deploy a Microsoft Sentinel workspace.

  • Ingest pre-recorded data to simulate scenarios that showcase various Microsoft Sentinel features.

 

Who Should Attend?

This course is aimed at:

  • IT professionals

  • Azure administrators with some experience in administering and configuring Azure.

The course is ideal for those looking to gain insights into implementing Microsoft’s SIEM/SOAR solution, Microsoft Sentinel.

 

Course Outline:

Module 1: Overview of Microsoft Sentinel

Lessons:

  • Overview of Microsoft Sentinel

  • Data ingestion methods

  • Microsoft Sentinel for MSSPs

  • User and Entity Behaviour Analytics

  • Fusion

  • Notebooks

  • Management & Automation Tools

  • Logs & Costs

Module 2: KQL

Lessons:

  • Importance of KQL across Azure

  • The User Interface (demo)

  • The standard KQL Structure

  • Common KQL Commands

Module 3: Data Connectors

Lessons:

  • Manage content in Microsoft Sentinel

  • Connect data to Microsoft Sentinel using data connectors

  • Connect Microsoft services to Microsoft Sentinel

  • Connect Microsoft 365 Defender to Microsoft Sentinel

  • Connect Windows hosts to Microsoft Sentinel

  • Connect Common Event Format logs to Microsoft Sentinel

  • Connect syslog data sources to Microsoft Sentinel

  • Connect threat indicators to Microsoft Sentinel

Module 4: Analytics Rules

Lessons:

  • Threat detection with Microsoft Sentinel analytics

  • Automation in Microsoft Sentinel

  • Threat response with Microsoft Sentinel playbooks

Module 5: Incident Management

Lessons:

  • Incident management Overview

  • User and Entity Behaviour Analytics

  • Data normalization in Microsoft Sentinel

  • Query, visualize, and monitor data

Module 6: Hunting

Lessons:

  • Threat hunting concepts

  • Threat hunting with Microsoft Sentinel

  • Use Search jobs in Microsoft Sentinel

  • Hunt for threats using notebooks

Module 7: Watchlists

Lessons:

  • Prioritize incidents

  • Import business data

  • Reduce Alert Fatigue

  • Enrich Event Data

Module 8: Threat Intelligence

Lessons:

  • Threat Intelligence Overview

  • Threat Intelligence in Microsoft Sentinel

(4.2 Ratings)

Download Course Contents

Still unsure?
We're just a click away


Course Outline PDF

SpireTec Unique Features

course-img
1-On-1 Training

Benefit from our 1-On-1 Training for personalized, focused, and effective learning experiences.

course-img
Customized Training

Experience our Customized Training service tailored to meet your specific learning needs and goals

course-img
4 - Hours / Weekend Session

Join our Class featuring 4 - Hours / Weekend Session for in-depth learning and expert training.

course-img
Free Demo Class

Join our Free Demo Class to experience top-notch training and expert guidance first hand!

Purchase This Course

Request More Information

CERTIFICATE

Get Ahead With SpireTec Solutions
Training Certificate

Earn your Certificate

Our course is exhaustive and this certificate is proof that you have taken a big leap in mastering the domain.

Differentiate yourself with Masters Certificate

Our course is exhaustive and this certificate is proof that you have taken a big leap in mastering the domain.

Share your achievement

Our course is exhaustive and this certificate is proof that you have taken a big leap in mastering the domain.

Need Customized Curriculum?

Our course is exhaustive and this certificate is proof that you have taken a big leap in mastering the domain.

Talk To Adviser
course-certificate

Top Certifications