Return to Investigate, search for, and mitigate threats using Microsoft Sentinel, Microsoft Defender for Cloud, and Microsoft 365 Defender.
Microsoft Security Operations Analyst
Learn how to investigate, respond to, and hunt for threats using Microsoft Sentinel, Microsoft Defender XDR and Microsoft Defender for Cloud.
Learn how to investigate, respond to, and hunt for threats using Microsoft Sentinel, Microsoft Defender XDR and Microsoft Defender for Cloud. In this course you will learn how to mitigate cyberthreats using these technologies. Specifically, you will configure and use Microsoft Sentinel as well as utilise Kusto Query Language (KQL) to perform detection, analysis, and reporting. The course was designed for people who work in a Security Operations job role and helps learners prepare for the exam SC-200: Microsoft Security Operations Analyst.
As a candidate for this certification, you’re a Microsoft security operations analyst who reduces organisational risk by:
As a security operations analyst, you:
You also monitor, identify, investigate, and respond to threats in cloud and on-premises environments by using:
You collaborate with business and security leadership to define security standards for the organisation. You work with other roles across the digital enterprise to implement the standards, to enhance the security posture of an organisation, and to raise security awareness.
Module 1: Mitigate threats using Microsoft Defender XDR
Module 2: Mitigate threats using Microsoft Security Copilot
Module 3: Mitigate threats using Microsoft Purview
Module 4: Mitigate threats using Microsoft Defender for Endpoint
Module 5: Mitigate threats using Microsoft Defender for Cloud
Module 6: Create queries for Microsoft Sentinel using Kusto Query Language (KQL)
Module 7: Configure your Microsoft Sentinel environment
By the end of the course, you should be able to:
The course was designed for people who work in a Security Operations job role and helps learners prepare for the exam SC-200: Microsoft Security Operations Analyst.
As a candidate, you should be familiar with:
The Microsoft Security Operations Analyst collaborates with organisational stakeholders to secure information technology systems for the organisation. Their goal is to reduce organisational risk by rapidly remediating active attacks in the environment, advising on improvements to threat protection practices, and referring violations of organisational policies to appropriate stakeholders.