Manage security threats

Hunt for threats using Microsoft Defender XDR and Microsoft Sentinel, and create workbooks for security monitoring.

Encompasses hunting for threats using Microsoft Defender XDR including identifying threats with Kusto Query Language (KQL), interpreting threat analytics, and creating custom hunting queries. Covers hunting for threats using Microsoft Sentinel through MITRE ATT&CK matrix analysis, threat indicators management, hunt creation and management, hunting query monitoring, hunting bookmarks for data investigations, archived log data retrieval, and search job management. Also includes creating and configuring Microsoft Sentinel workbooks by activating and customizing workbook templates, creating custom workbooks with KQL, and configuring visualizations for security monitoring and reporting.
5 minutes 5 Questions

Managing security threats is a critical responsibility for Microsoft Security Operations Analyst Associates. This involves identifying, analyzing, and responding to potential security incidents across an organization's infrastructure. The process begins with threat detection, where analysts utilize…

Concepts covered: Identify threats using Kusto Query Language (KQL), Interpret threat analytics in the Defender portal, Create custom hunting queries with KQL, Analyze attack vector coverage with MITRE ATT&CK matrix, Manage and use threat indicators in Sentinel, Create and manage hunts in Microsoft Sentinel, Create and monitor hunting queries in Sentinel, Use hunting bookmarks for data investigations, Retrieve and manage archived log data, Create and manage search jobs in Sentinel, Activate and customize workbook templates, Create custom workbooks with KQL, Configure workbook visualizations

Test mode:
More Manage security threats questions
520 questions (total)