Welcome to a brand new series which is all around the SC 200 – Microsoft Security Operations Analyst Exam Study Guide. This series goes through all the exam topics and will feature both theory and practical labs!
This is episode 2 of Learning path 7: Create detections and perform investigations using Microsoft Sentinel. In this episode we will cover the following subjects:
- Security Incident Management in Microsoft Sentinel
- Entity Behavioral Analytics in Microsoft Sentinel
- Data Normalization in Microsoft Sentinel
- Demo: Use Repositories in Microsoft Sentinel
Useful Links:
SC-200 GitHub Lab exercises: https://microsoftlearning.github.io/SC-200T00A-Microsoft-Security-Operations-Analyst/
Mastering M365 Defender Book: https://www.amazon.co.uk/Mastering-Microsoft-365-Defender-Implement/dp/1803241705/ref=asc_df_1803241705/?tag=googshopuk-21&linkCode=df0&hvadid=652224536334&hvpos=&hvnetw=g&hvrand=5145177730715298547&hvpone=&hvptwo=&hvqmt=&hvdev=c&hvdvcmdl=&hvlocint=&hvlocphy=1006886&hvtargid=pla-2187768707519&psc=1&th=1&psc=1&gclid=CjwKCAjwjaWoBhAmEiwAXz8DBbqdHuuEp-CN2OH_2EBOKVWnGQ7otJalQ20QMcTx7nOzPpQU1QzKHxoCFPQQAvD_BwE
