TOIT Training

SC-200: Microsoft Security Operations Analyst

SC-200: Microsoft Security Operations Analyst
  • Overview
  • Curriculum
  • Reviews

 

In this online training course, students will gain the knowledge and skills to mitigate cyberthreats using these technologies. Specifically, you will configure and use Microsoft Sentinel as well as utilize Kusto Query Language (KQL) to perform detection, analysis, and reporting. The course was designed for people who work in a Security Operations job role and helps learners prepare for the exam SC-200: Microsoft Security Operations Analyst.

 

  • 12 Sections
  • 34 Lessons
  • 14h Duration
Expand All

Defender for Endpoint

4 Lessons
  • Overview
  • Exploring the Dashboard
  • Defender for Endpoint Security
  • Defender for Endpoint Monitoring

M365 Defender

3 Lessons
  • Overview
  • Incidents and Alerts, Hunting, Vulnerability Management
  • Email and Collaboration, Cloud Apps

Working with Defender for Cloud

1 Lesson
  • Working with Defender for Cloud

Connecting and Onboarding Assets

5 Lessons
  • Enable Auto Provisioning
  • Adding a Non-Azure Server
  • Adding Linux Machines
  • Viewing Security Recommendations
  • GCP, Alerts

 Alerts and Responses

4 Lessons
  • Creating Logic Apps
  • Adding a Workflow
  • Exploring Suppressions Rules
  • Creating a Suppression Rule 

Creating Queries Using Kusto Query Language

2 Lessons
  • Overview
  • Examples

Basic Configuration

3 Lessons
  • Sentinel Overview and Initial Setup  
  • Permissions, Roles and Log Analytics
  • Data Connectors, Watchlists and Threat Intelligence

 Logging and Importing

1 Lesson
  • Logging and Importing Overview and Example

Alerts and Investigation

3 Lessons
  • Alerts and Investigation Overview  
  • Exploring Alerts and Investigation 
  • Alerts and Investigation Syslog

Sentinel Analytics

2 Lessons
  • Sentinel Analytics Overview  
  • Sentinel Analytics Rule Examples

Working with Microsoft Sentinel

3 Lessons
  • Threat Response 
  • Threat Response Setup 
  • Security Incident Management

 Anomaly Detection and Hunting

3 Lessons
  • Anomaly Rules  
  • Threat Hunting Rules
  • Hunting Queries

0

0 Ratings
5 Star 0%
4 Star 0%
3 Star 0%
2 Star 0%
1 Star 0%

Reviews

Free

Start Course

Retake Course

Are you sure you want to retake the course? This action will permanently delete all your progress in this course.

Course Includes

  • Mitigate threats using Microsoft 365 Defender
  • Mitigate threats using Microsoft Defender for Cloud
  • Mitigate threats using Microsoft Sentinel

Deleting Course Review

Are you sure? You can't restore this back

Course Access

This course is password protected. To access it please enter your password below:

Buy for group

SC-200: Microsoft Security Operations Analyst
No groups Found

You don't have any groups yet

Create a group and add group members. Sync Group(s)