Welcome to a brand new series which is all around the SC 200 – Microsoft Security Operations Analyst Exam Study Guide. This series goes through all the exam topics and will feature both theory and practical labs!
This is episode 1 of Learning path 4: Create queries for Microsoft Sentinel using Kusto Query Language (KQL). In this episode we will cover the following subjects:
- Construct KQL statements for Microsoft Sentinel
- Analyze query results using KQL
- Demo: Create Queries for Microsoft Sentinel using KQL
Useful Links:
SC-200 GitHub Lab exercises: https://microsoftlearning.github.io/SC-200T00A-Microsoft-Security-Operations-Analyst/
https://learn.microsoft.com/en-us/training/paths/sc-200-mitigate-threats-using-azure-defender/
https://learn.microsoft.com/en-us/training/paths/sc-200-utilize-kql-for-azure-sentinel/
https://learn.microsoft.com/en-us/training/paths/sc-200-configure-azure-sentinel-environment/
https://learn.microsoft.com/en-us/training/paths/sc-200-connect-logs-to-azure-sentinel/
Twitter: https://twitter.com/ShabazDarr
LinkedIn: https://www.linkedin.com/in/shabaz-darr-900b8361/
TikTok: https://www.tiktok.com/@iamitgeek?is_from_webapp=1&sender_device=pc
source
More About This Author
Array
YouTube27 September 2023SC 200: Microsoft Security Operations Analyst Exam Study Guide – Learning Path 5, Episode 3 – YouTube
YouTube25 September 2023SC 200: Microsoft Security Operations Analyst Exam Study Guide – Learning Path 5, Episode 2 – YouTube
YouTube22 September 2023SC 200: Microsoft Security Operations Analyst Exam Study Guide – Learning Path 5, Episode 1 – YouTube
YouTube20 September 2023SC 200: Microsoft Security Operations Analyst Exam Study Guide – Learning Path 4, Episode 2 – YouTube