|
Showing 1 - 2 of
2 matches in All Departments
Learn how to set up, configure, and use Microsoft Sentinel to
provide security incident and event management services for your
multi-cloud environment Key Features Collect, normalize, and
analyze security information from multiple data sources Integrate
AI, machine learning, built-in and custom threat analyses, and
automation to build optimal security solutions Detect and
investigate possible security breaches to tackle complex and
advanced cyber threats Book DescriptionMicrosoft Sentinel is a
security information and event management (SIEM) tool developed by
Microsoft that helps you integrate cloud security and artificial
intelligence (AI). This book will teach you how to implement
Microsoft Sentinel and understand how it can help detect security
incidents in your environment with integrated AI, threat analysis,
and built-in and community-driven logic. The first part of this
book will introduce you to Microsoft Sentinel and Log Analytics,
then move on to understanding data collection and management, as
well as how to create effective Microsoft Sentinel queries to
detect anomalous behaviors and activity patterns. The next part
will focus on useful features, such as entity behavior analytics
and Microsoft Sentinel playbooks, along with exploring the new
bi-directional connector for ServiceNow. In the next part, you'll
be learning how to develop solutions that automate responses needed
to handle security incidents and find out more about the latest
developments in security, techniques to enhance your cloud security
architecture, and explore how you can contribute to the security
community. By the end of this book, you'll have learned how to
implement Microsoft Sentinel to fit your needs and protect your
environment from cyber threats and other security issues. What you
will learn Implement Log Analytics and enable Microsoft Sentinel
and data ingestion from multiple sources Tackle Kusto Query
Language (KQL) coding Discover how to carry out threat hunting
activities in Microsoft Sentinel Connect Microsoft Sentinel to
ServiceNow for automated ticketing Find out how to detect threats
and create automated responses for immediate resolution Use
triggers and actions with Microsoft Sentinel playbooks to perform
automations Who this book is forYou'll get the most out of this
book if you have a good grasp on other Microsoft security products
and Azure, and are now looking to expand your knowledge to
incorporate Microsoft Sentinel. Security experts who use an
alternative SIEM tool and want to adopt Microsoft Sentinel as an
additional or a replacement service will also find this book
useful.
Understand how to set up, configure, and use Azure Sentinel to
provide security incident and event management services for your
environment Key Features Secure your network, infrastructure, data,
and applications on Microsoft Azure effectively Integrate
artificial intelligence, threat analysis, and automation for
optimal security solutions Investigate possible security breaches
and gather forensic evidence to prevent modern cyber threats Book
DescriptionAzure Sentinel is a Security Information and Event
Management (SIEM) tool developed by Microsoft to integrate cloud
security and artificial intelligence (AI). Azure Sentinel not only
helps clients identify security issues in their environment, but
also uses automation to help resolve these issues. With this book,
you'll implement Azure Sentinel and understand how it can help find
security incidents in your environment with integrated artificial
intelligence, threat analysis, and built-in and community-driven
logic. This book starts with an introduction to Azure Sentinel and
Log Analytics. You'll get to grips with data collection and
management, before learning how to create effective Azure Sentinel
queries to detect anomalous behaviors and patterns of activity. As
you make progress, you'll understand how to develop solutions that
automate the responses required to handle security incidents.
Finally, you'll grasp the latest developments in security, discover
techniques to enhance your cloud security architecture, and explore
how you can contribute to the security community. By the end of
this book, you'll have learned how to implement Azure Sentinel to
fit your needs and be able to protect your environment from cyber
threats and other security issues. What you will learn Understand
how to design and build a security operations center Discover the
key components of a cloud security architecture Manage and
investigate Azure Sentinel incidents Use playbooks to automate
incident responses Understand how to set up Azure Monitor Log
Analytics and Azure Sentinel Ingest data into Azure Sentinel from
the cloud and on-premises devices Perform threat hunting in Azure
Sentinel Who this book is forThis book is for solution architects
and system administrators who are responsible for implementing new
solutions in their infrastructure. Security analysts who need to
monitor and provide immediate security solutions or threat hunters
looking to learn how to use Azure Sentinel to investigate possible
security breaches and gather forensic evidence will also benefit
from this book. Prior experience with cloud security, particularly
Azure, is necessary.
|
You may like...
Hunting Evil
Chris Carter
Paperback
(2)
R295
R264
Discovery Miles 2 640
The Coven
Lizzie Fry
Paperback
R442
R406
Discovery Miles 4 060
The Party
Elizabeth Day
Paperback
(1)
R309
R281
Discovery Miles 2 810
Small Mercies
Dennis Lehane
Paperback
R464
R423
Discovery Miles 4 230
Cold People
Tom Rob Smith
Paperback
R413
R380
Discovery Miles 3 800
Eruption
Michael Crichton, James Patterson
Paperback
R395
R353
Discovery Miles 3 530
Blood Trail
Tony Park
Paperback
R310
R281
Discovery Miles 2 810
Nobody's Fool
Harlan Coben
Paperback
R390
R348
Discovery Miles 3 480
|