YoVDO

Threat Response with Azure Sentinel Playbooks

Offered By: Microsoft via YouTube

Tags

Microsoft Ignite Courses

Course Description

Overview

Explore how to create Azure Sentinel playbooks for effective security threat response in this comprehensive video session. Learn about Azure Sentinel's Security Orchestration, Automation, and Response (SOAR) capabilities and delve into the Azure Sentinel Logic Apps connector. Discover the process of deploying Azure Sentinel, enabling Azure Activity Log, and setting up analytic rules. Understand the differences between playbooks and logic apps, and explore how to create email alerts and trigger playbooks. Gain hands-on experience with the Logic App Designer tool to build playbooks graphically, incorporating dynamic content and conditional statements. Watch a practical demonstration and test your knowledge with interactive questions throughout the session.

Syllabus

Introduction
Agenda
Welcome
Azure Sentinel
Deploy Azure Sentinel
Learn module
Enable Azure Activity Log
Enable analytic rule
Azure Sentinel playbooks
What are some sore topics
What is Azure Sentinel playbooks
What is the difference between playbooks and logic apps
What is Azure Sentinel
Logic apps
Alerts and incidents
Email alerts
Actions
Knowledge Check
Trigger playbooks
Sentinel playbooks
Logic App Designer tool
Build playbooks graphically
Dynamic content
Conditional statements
Demo
Question 3 Dynamic Content
Question 4 Global Admin


Taught by

Microsoft Ignite

Tags

Related Courses

AI Show - Ignite Recap: Arc-Enabled ML, Language Services, and OpenAI
Microsoft via YouTube
Qué Esperar y Aprender en Microsoft Ignite - Guía para Principiantes
Microsoft via YouTube
Governance & Security Practices for Microsoft 365 Including Microsoft Teams Viva
Microsoft via YouTube
Identity Journey from On-Premises to the Cloud
Microsoft via YouTube
Stories from DART - Taking the Ware out of Ransomware
Microsoft via YouTube