Master Class: Microsoft Defender and Microsoft Sentinel for Hybrid Cloud (HYBSEC)

 

Course Overview

Today, IT environments (VMs, apps and data platforms) are not only hosted on premises nor only in the cloud. Working with both world is the reality for a variety of reasons. This affects a lot of processes, design decisions but also security monitoring.

Monitoring must be established, and the collected data has to be investigated and evaluated. In this Master Class we dive deep into Microsoft Cloud Security whether on-prem or cloud-based systems. We will focus on Microsoft Defender for Cloud, Defender for Identity and Microsoft Sentinel. These services are able to monitor and secure you hybrid environment.

Who should attend

Administrators with experience of at least 5 years in administering Windows Active Directory Domain Services, Azure Active Directory and Azure resources.

Course Content

Defender for Cloud
  • Overview of Defender for Cloud
  • Prerequisites and implementation
  • Securing Azure workloads
  • Securing on-premises workloads
  • Cloud Security Posture Management overview
  • Use automation to respond to alerts
  • Mastering Azure Policy guest configuration
Defender for Identity
  • Overview of MS Defender for Identity
  • Planning MS Defender for Identity Deployment
    (Architecture, Prerequisites)+
  • Implement Defender for Identity
  • Investigate alerts/detections
    • Reconnaissance Alerts
    • Compromised Credential Alerts
    • Lateral Movement Alerts
    • and some more
KQL Primer
  • Basic operators for querying tables and formatting output
  • Working with variables
  • Advance operators and functions
    • Extending tables
    • Querying and filtering property bags
    • Aggregate records and
    • Create custom functions
  • working with multiple tables and external data
Microsoft Sentinel
  • Data collectors Implementation
  • Creating Analytic rules
  • Use automation to respond to Incidents
  • Automatically enrich incident information
  • Investigate Incidents
  • Perform threat hunting
  • Create workbooks
  • Investigate with UEBA

Prix & Delivery methods

Formation en ligne

Durée
5 jours

Prix
  • CHF 5 890,–
Formation en salle équipée

Durée
5 jours

Prix
  • Suisse : CHF 5 890,–

Agenda

Instructor-led Online Training:   Course conducted online in a virtual classroom.
FLEX Classroom Training (hybrid course):   Course participation either on-site in the classroom or online from the workplace or from home.

Allemand

Fuseau horaire : Heure normale d'Europe centrale (HNEC)

Formation en ligne
Option présentielle : Hambourg, Allemagne
Fuseau horaire : Heure normale d'Europe centrale (HNEC)
Formation en ligne
Option présentielle : Francfort, Allemagne
Fuseau horaire : Heure d'été d'Europe centrale (HAEC)
Formation en ligne
Option présentielle : Hambourg, Allemagne
Fuseau horaire : Heure d'été d'Europe centrale (HAEC)
Formation en ligne
Option présentielle : Munich, Allemagne
Fuseau horaire : Heure normale d'Europe centrale (HNEC)

Anglais

Fuseau horaire : Heure normale d'Europe centrale (HNEC)

Formation en ligne Fuseau horaire : Heure normale d'Europe centrale (HNEC)
Formation en ligne Fuseau horaire : Heure d'été d'Europe centrale (HAEC)
Formation en ligne Fuseau horaire : Heure normale d'Europe centrale (HNEC)
FLEX Classroom Training (hybrid course):   Course participation either on-site in the classroom or online from the workplace or from home.

Allemagne

Hambourg
Francfort
Hambourg
Munich

Si vous ne trouvez pas de date adéquate, n'hésitez pas à vérifier l'agenda de toutes nos formations FLEX internationales