Microsoft sentinel in action architect, design, implement, and operate microsoft sentinel as the core of your security solutions

Learn how to set up, configure, and use Microsoft Sentinel to provide security incident and event management services for your multi-cloud environment Key Features Collect, normalize, and analyze security information from multiple data sources Integrate AI, machine learning, built-in and custom thre...

Descripción completa

Detalles Bibliográficos
Otros Autores: Diver, Richard, author (author), Bushey, Gary, author, Perkins, John, author
Formato: Libro electrónico
Idioma:Inglés
Publicado: Birmingham, England ; Mumbai : Packt Publishing [2022]
Edición:Second edition
Materias:
Ver en Biblioteca Universitat Ramon Llull:https://discovery.url.edu/permalink/34CSUC_URL/1im36ta/alma991009649835906719
Tabla de Contenidos:
  • Table of Contents Getting started with Microsoft Sentinel Azure Monitor-Introduction to Log Analytics Managing and collecting data Integrating Threat Intelligence with Microsoft Sentinel Using the Kusto Query Language Microsoft Sentinel Logs and Writing Queries Creating Analytic Rules Creating and Using Workbooks Incident Management Configuring and Using Entity Behavior Threat Hunting in Microsoft Sentinel Creating Playbooks and Automation ServiceNow integration for Alert and Case Management Operational Tasks for Microsoft Sentinel Constant Learning and Community Contribution.