Microsoft Azure Sentinel & Security Training

$400.00

Category:

Description

Introduction to Azure Sentinel

Overview of Azure Sentinel.
Understanding the role of a SIEM and SOAR solution in cybersecurity.
Azure Sentinel architecture and components.

Data Ingestion and Data Connectors

Configuring data connectors to collect data from various sources.
Data ingestion best practices.
Common data sources and their connectors.

Data Queries and Investigations

Introduction to Kusto Query Language (KQL).
Writing queries to analyze and investigate security data.
Creating custom workbooks for data visualization.

Alerts and Incidents Management

Creating and managing security alerts in Azure Sentinel.
Incident management and response workflows.
Automation and orchestration of incident response tasks.

Threat Intelligence and Threat Detection

Incorporating threat intelligence feeds into Azure Sentinel.
Customizing and fine-tuning threat detection rules.
Behavioral analytics and anomaly detection.

Integration with Azure and Third-Party Services

Integrating Azure services like Azure Active Directory and Azure Security Center.
Connecting third-party security solutions.
Using Logic Apps and Playbooks for automation.

User and Entity Behavior Analytics (UEBA)

Understanding UEBA in Azure Sentinel.
Detecting and responding to suspicious user and entity activities.
Behavioral profiling and analysis.

Compliance and Reporting

Generating compliance reports.
Meeting regulatory and compliance requirements.
Auditing and monitoring in Azure Sentinel.

Advanced Threat Hunting

Proactive threat hunting techniques.
Building custom threat hunting queries.
Leveraging advanced hunting tools and capabilities.

Security Orchestration and Automation

Designing and automating security workflows.
Creating and managing playbooks.
Integration with Azure Logic Apps.

Azure Sentinel Deployment and Scaling

Deployment options for Azure Sentinel.
Scaling Azure Sentinel for large-scale environments.
Best practices for managing a Sentinel workspace.

Real-World Scenarios and Use Cases

Analyzing real-world cybersecurity scenarios.
Creating solutions for specific security challenges.
Case studies and hands-on exercises.

Azure Sentinel Certification Preparation

Overview of Azure Sentinel certification (if available).
Tips and resources for certification exam preparation

Azure Security

Manage security controls for identity and access

Manage Azure built-in role assignments

Manage custom roles, including Azure roles and Microsoft Entra roles

Implement and manage Microsoft Entra Permissions Management

Plan and manage Azure resources in Microsoft Entra Privileged Identity Management, including settings and
assignments

Implement multi-factor authentication (MFA) for access to Azure resources

Implement Conditional Access policies for cloud resources in Azure

Manage Microsoft Entra application access

Manage access to enterprise applications in Microsoft Entra ID, including OAuth permission grants

Manage Microsoft Entra app registrations

Configure app registration permission scopes

Manage app registration permission consent

Manage and use service principals

Manage managed identities

Plan and implement security for virtual networks

Plan and implement Network Security Groups (NSGs) and Application Security Groups (ASGs)

Manage virtual networks by using Azure Virtual Network Manager

Plan and implement user-defined routes (UDRs)

Plan and implement Virtual Network peering or VPN gateway

Plan and implement Virtual WAN, including secured virtual hub

Secure VPN connectivity, including point-to-site and site-to-site

Implement encryption over ExpressRoute

Configure firewall settings on Azure resources

Monitor network security by using Network Watcher

Plan and implement security for private access to Azure resources

Plan and implement virtual network Service Endpoints

Plan and implement Private Endpoints

Plan and implement Private Link services

Plan and implement network integration for Azure App Service and Azure Functions

Plan and implement network security configurations for an App Service Environment (ASE)

Plan and implement network security configurations for an Azure SQL Managed Instance

Plan and implement security for public access to Azure resources

Plan and implement Transport Layer Security (TLS) to applications, including Azure App Service and API Management

Plan, implement, and manage an Azure Firewall, including Azure Firewall Manager and firewall policies

Plan and implement an Azure Application Gateway

Plan and implement an Azure Front Door, including Content Delivery Network (CDN)

Plan and implement a Web Application Firewall (WAF)

Recommend when to use Azure DDoS Protection Standard

Plan and implement advanced security for compute

Plan and implement remote access to virtual machines, including Azure Bastion and just-in-time (JIT)

Configure network isolation for Azure Kubernetes Service (AKS)

Secure and monitor AKS

Configure authentication for AKS

Configure security monitoring for Azure Container Instances (ACIs)

Configure security monitoring for Azure Container Apps (ACAs)

Manage access to Azure Container Registry (ACR)

Configure disk encryption, including Azure Disk Encryption (ADE), encryption at host, and confidential disk encryption

Recommend security configurations for Azure API Management

Plan and implement security for storage

Configure access control for storage accounts

Manage storage account access keys

Select and configure an appropriate method for access to Azure Files

Select and configure an appropriate method for access to Azure Blob Storage

Select and configure appropriate methods for protecting against data security threats, including soft delete, backups, versioning, and immutable storage

Configure Bring your own key (BYOK)

Enable double encryption at the Azure Storage infrastructure level

Plan and implement security for Azure SQL Database and Azure SQL Managed Instance

Enable Microsoft Entra database authentication

Enable database auditing

Plan and implement dynamic masking

Implement Transparent Data Encryption (TDE)

Recommend when to use Azure SQL Database Always Encrypted

Implement and manage enforcement of cloud governance policies

Create, assign, and interpret policies and initiatives in Azure Policy

Configure Azure Key Vault network settings

Configure access to Key Vault, including vault access policies and Azure Role Based Access Control

Manage certificates, secrets, and keys

Configure key rotation

Perform backup and recovery of certificates, secrets, and keys

Implement security controls to protect backups

Implement security controls for asset management

Manage security posture by using Microsoft Defender for Cloud

Identify and remediate security risks by using the Microsoft Defender for Cloud Secure Score and Inventory

Assess compliance against security frameworks by using Microsoft Defender for Cloud

Manage compliance standards in Microsoft Defender for Cloud

Add custom standards to Microsoft Defender for Cloud

Connect hybrid cloud and multi-cloud environments to Microsoft Defender for Cloud, including Amazon Web Services (AWS) and Google Cloud Platform (GCP)

Implement and use Microsoft Defender External Attack Surface Management (EASM)

Configure and manage threat protection by using Microsoft Defender for Cloud

Enable workload protection services in Microsoft Defender for Cloud

Configure Microsoft Defender for Servers, Microsoft Defender for Databases, and Microsoft Defender for Storage

Implement and manage agentless scanning for virtual machines in Microsoft Defender for Servers

Implement and manage Microsoft Defender Vulnerability Management for Azure virtual machines

Connect to and configure settings in Microsoft Defender for Cloud Devops Security, including GitHub, Azure DevOps, and GitLab

Configure and manage security monitoring and automation solutions

Manage and respond to security alerts in Microsoft Defender for Cloud

Configure workflow automation by using Microsoft Defender for Cloud

Monitor network security events and performance data by configuring data collection rules (DCRs) in Azure Monitor

Configure data connectors in Microsoft Sentinel

Enable analytics rules in Microsoft Sentinel

Configure automation in Microsoft Sentinel

Duration & Timings :

Duration – 30 Hours.

Training Type: Online Live Interactive Session.

Faculty: Experienced.

Weekend Session – Sat & Sun 9:30 AM to 12:30 PM (EST) – 10 Weeks. April 26, 2025.

 Inquiry Now         Discount Offer 

USA: +1 734 418 2465 | India: +91 40 4018 1306

Azure & Microsoft are trademarks registered and owned by respective owners, which are not affiliated with Learntek.org, and does not endorse this product. All other trademarks and copyrights are the property of their respective owners.

Reviews

There are no reviews yet.

Be the first to review “Microsoft Azure Sentinel & Security Training”

LEARNTEK

© 2019 LEARNTEK. ALL RIGHTS RESERVED | Privacy Policy | Terms & Conditions



USA: +1 734 418 2465 | info@learntek.org Discount Offer
Season's Best Discount Offer End's in
Discount Offer