|
Showing 1 - 2 of
2 matches in All Departments
Build next-generation security operations with Microsoft Sentinel
Microsoft Sentinel is the scalable, cloud-native, security
information and event management (SIEM) solution for automating and
streamlining threat identification and response across your
enterprise. Now, three leading experts guide you step-by-step
through planning, deployment, and operations, helping you use
Microsoft Sentinel to escape the complexity and scalability
challenges of traditional solutions. Fully updated for the latest
enhancements, this edition introduces new use cases for
investigation, hunting, automation, and orchestration across your
enterprise and all your clouds. The authors clearly introduce each
service, concisely explain all new concepts, and present proven
best practices for maximizing Microsoft Sentinel's value throughout
security operations. Three of Microsoft's leading security
operations experts show how to: Review emerging challenges that
make better cyberdefense an urgent priority See how Microsoft
Sentinel responds by unifying alert detection, threat visibility,
proactive hunting, and threat response Explore components,
architecture, design, and initial configuration Ingest alerts and
raw logs from all sources you need to monitor Define and validate
rules that prevent alert fatigue Use threat intelligence, machine
learning, and automation to triage issues and focus on high-value
tasks Add context with User and Entity Behavior Analytics (UEBA)
and Watchlists Hunt sophisticated new threats to disrupt cyber kill
chains before you're exploited Enrich incident management and
threat hunting with Jupyter notebooks Use Playbooks to automate
more incident handling and investigation tasks Create
visualizations to spot trends, clarify relationships, and speed
decisions Simplify integration with point-and-click data connectors
that provide normalization, detection rules, queries, and Workbooks
About This Book For cybersecurity analysts, security
administrators, threat hunters, support professionals, engineers,
and other IT professionals concerned with security operations For
both Microsoft Azure and non-Azure users at all levels of
experience
Master a complete strategy for protecting any Azure cloud network
environment! Network security is crucial to safely deploying and
managing Azure cloud resources in any environment. Now, two of
Microsoft's leading experts present a comprehensive, cloud-native
approach to protecting your network, and safeguarding all your
Azure systems and assets. Nicholas DiCola and Anthony Roman begin
with a thoughtful overview of network security's role in the cloud.
Next, they offer practical, real-world guidance on deploying
cloud-native solutions for firewalling, DDOS, WAF, and other
foundational services - all within a best-practice secure network
architecture based on proven design patterns. Two of Microsoft's
leading Azure network security experts show how to: Review Azure
components and services for securing network infrastructure, and
the threats to consider in using them Layer cloud security into a
Zero Trust approach that helps limit or contain attacks Centrally
direct and inspect traffic with the managed, stateful,
Platform-as-a-Service Azure Firewall Improve visibility into Azure
traffic with Deep Packet Inspection Optimize the way network and
web application security work together Use Azure DDoS Protection
(Basic and Standard) to mitigate Layer 3 (volumetric) and Layer 4
(protocol) DDoS attacks Enable log collection for Firewall, DDoS,
WAF, and Bastion; and configure NSG Flow Logs and Traffic Analytics
Continually monitor network security with Azure Sentinel, Security
Center, and Network Watcher Customize queries, playbooks,
workbooks, and alerts when Azure's robust out-of-the-box alerts and
tools aren't enough Build and maintain secure architecture designs
that scale smoothly to handle growing complexity About This Book
For Security Operations (SecOps) analysts,
cybersecurity/information security professionals, network security
engineers, and other IT professionals For individuals with security
responsibilities in any Azure environment, no matter how large,
small, simple, or complex
|
You may like...
Loot
Nadine Gordimer
Paperback
(2)
R398
R369
Discovery Miles 3 690
Loot
Nadine Gordimer
Paperback
(2)
R398
R369
Discovery Miles 3 690
|