Войти
  • 3938Просмотров
  • 6 месяцев назадОпубликованоCyberPlatter

Threat Hunting in Microsoft Sentinel | KQL, Hunting Queries & Live Demos | KQL for Threat Hunting

Welcome to our Microsoft Sentinel Series! 🚀 Our goal is to help you become an expert in Microsoft Sentinel through practical, hands-on demos. Microsoft Sentinel Series Playlist: In this chapter, we will explore incidents in Microsoft Sentinel and how to manage them effectively. Key Topics Covered: What is Threat Hunting? Key differences between Threat Hunting and Analytics Rules How to use KQL (Kusto Query Language) for effective threat detection Hands-on demos in Microsoft Sentinel: Writing and running KQL queries Creating and using Hunting Queries in real-world scenarios Chapter 1: Microsoft Sentinel Architecture: Chapter 2: Microsoft Sentinel Deployment and RBAC: Chapter 3: Microsoft Sentinel Content Hub and Data Connectors: Chapter 4: Connecting Entra ID to Microsoft Sentinel: Chapter 5: Threat Detection and Mitigation Workflow in Microsoft Sentinel: Chapter 6 - Threat Intelligence in Microsoft Sentinel: Chapter 7: Microsoft Sentinel : Analytics Rules | Threat Detection: Chapter 8: Microsoft Sentinel User & Entity Behavior Analytics UEBA​: Chapter 9: Ingest logs to Microsoft Sentinel using Azure Monitor Agent (AMA) : Chapter 10: Microsoft Sentinel Automated Responses: Automation Rules and Playbooks: Microsoft Sentinel SOAR Solution: Chapter 11: Microsoft Sentinel Workbooks | Data Visualization in Microsoft Sentinel: Chapter 12: Microsoft Sentinel Watchlists: Chapter 13: Microsoft Sentinel Notebooks | How to Investigate Threats with Jupyter & MSTICPy: Chapter 14: Microsoft Sentinel Incident Response: Chapter 15: Threat Hunting in Microsoft Sentinel | KQL, Hunting Queries & Live Demos: SIEM Interview Questions and Answers Part 1 - SIEM Interview Questions and Answers Part 2 - Whether you're a beginner or looking to deepen your understanding, this series is designed to provide valuable insights and actionable knowledge. Stay tuned for more chapters packed with demos and in-depth tutorials! 🔔 Don’t forget to like, subscribe, and hit the notification bell to stay updated! #cyberplatter #cybersecurity #security #securityconcepts #SIEM #SOAR #securitytools #securitytraining #cybersecuritytraining #securitytutorial #cybersecuritytutorial #cybersecsec #cybersecurityexperts #cybersecurityforbeginners #microsoftsecurity #microsoftsentinel #microsoft #azure #azuresecurity #incidents #incidentresponse #kql #kustoquerylangauge #threatdetection # threathunting # Microsoft Sentinel Training Microsoft Sentinel Tutorial Microsoft Sentinel Full Course