Microsoft Sentinel in Action: Architect, design, implement, and operate Microsoft Sentinel as the core of your security solutions, 2nd Edition


Microsoft Sentinel in Action: Architect, design, implement, and operate Microsoft Sentinel as the core of your security solutions, 2nd Edition
10 Feb. 2022
Author: Richard Diver,Gary Bushey,John Perkins(Author)
Publisher finelybook 出版社:‏ Packt Publishing; 2nd edition (10 Feb. 2022)
Language 语言: English
Print Length 页数: 478 pages
ISBN-10: 1801815534
ISBN-13: 9781801815536

Book Description


Learn how to set up, configure, and use Microsoft Sentinel to provide security incident and event management services for your multi-cloud environment
Key Features
Collect, normalize, and analyze security information from multiple data sources
Integrate AI, machine learning, built-in and custom threat analyses, and automation to build optimal security solutions
Detect and investigate possible security breaches to tackle complex and advanced cyber threats
Microsoft Sentinel is a security information and event management (SIEM) tool developed Author: Microsoft that helps you to integrate cloud security and artificial intelligence (AI). This book will enable you to implement Microsoft Sentinel and understand how it can help detect security incidents in your environment with integrated AI, threat analysis, and built-in and community-driven logic.
The book begins Author: introducing you to Microsoft Sentinel and Log Analytics. You’ll then get to grips with data collection and management, before learning how to create effective Microsoft Sentinel queries to detect anomalous behaviors and activity patterns. Moving ahead, you’ll learn about useful features such as entity behavior analytics and Microsoft Sentinel playbooks along with exploring the new bi-directional connector for ServiceNow. As you progress, you’ll find out how to develop solutions that automate responses needed to handle security incidents. Finally, you’ll grasp the latest developments in security, discover techniques to enhance your cloud security architecture, and explore how you can contribute to the security community.
Author: the end of this Microsoft Sentinel book, you’ll have learned how to implement Microsoft Sentinel to fit your needs and be able to protect your environment from cyber threats and other security issues.
What you will learn
Implement Log Analytics and enable Microsoft Sentinel and data ingestion from multiple sources
Get to grips with coding using the Kusto Query Language (KQL)
Discover how to carry out threat hunting activities in Microsoft Sentinel
Connect Microsoft Sentinel to ServiceNow for automated ticketing
Find out how to detect threats and create automated responses for immediate resolution
Use triggers and actions with Microsoft Sentinel playbooks to perform automations

下载地址 Download解决验证以访问链接!
打赏
未经允许不得转载:finelybook » Microsoft Sentinel in Action: Architect, design, implement, and operate Microsoft Sentinel as the core of your security solutions, 2nd Edition

评论 抢沙发

觉得文章有用就打赏一下

您的打赏,我们将继续给力更多优质内容

支付宝扫一扫

微信扫一扫