Engineering Microsoft Sentinel for Security Operations
摘要
In the rapidly changing threat landscape, security engineers need to shift from reactive defensiveness to proactive threat detection and threat response with the use of intelligence. Having said this, this module will provide you with the road map to operationalize Microsoft Sentinel in an enterprise environment. It outlines both foundational and advanced components necessary to utilize Sentinel as a comprehensive security operations platform, rather than a monitoring tool. Then it transitions to the advanced aspects of AI analysis, data reporting, and visualization.