Threat Detection, Investigation, and Response
摘要
In today’s rapidly changing world of cybersecurity, a reactive stance no longer meets the need. To discover, investigate, and respond to active threats effectively, security operations must move towards a proactive, intelligence-led posture. The section Threat Detection, Investigation, and Response was created to provide security analysts with the practical skills, tools, and techniques to operate Microsoft Sentinel successfully.