Microsoft Azure Sentinel : Planning and implementing Microsoft s cloud-native SIEM solution

Book Cover
Average Rating
Published
Microsoft Press, 2020.
Status
Available Online

Description

Loading Description...

More Details

Format
Edition
1st edition.
Language
English
UPC
9780136485506

Notes

Description
Microsoft Azure Sentinel Plan, deploy, and operate Azure Sentinel, Microsoft's advanced cloud-based SIEM Microsoft's cloud-based Azure Sentinel helps you fully leverage advanced AI to automate threat identification and response - without the complexity and scalability challenges of traditional Security Information and Event Management (SIEM) solutions. Now, three of Microsoft's leading experts review all it can do, and guide you step-by-step through planning, deployment, and daily operations. Leveraging in-the-trenches experience supporting early customers, they cover everything from configuration to data ingestion, rule development to incident management ... even proactive threat hunting to disrupt attacks before you're exploited. Three of Microsoft's leading security operations experts show how to: " Use Azure Sentinel to respond to today's fast-evolving cybersecurity environment, and leverage the benefits of its cloud-native architecture " Review threat intelligence essentials: attacker motivations, potential targets, and tactics, techniques, and procedures " Explore Azure Sentinel components, architecture, design considerations, and initial configuration " Ingest alert log data from services and endpoints you need to monitor " Build and validate rules to analyze ingested data and create cases for investigation " Prevent alert fatigue by projecting how many incidents each rule will generate " Help Security Operation Centers (SOCs) seamlessly manage each incident's lifecycle " Move towards proactive threat hunting: identify sophisticated threat behaviors and disrupt cyber kill chains before you're exploited " Do more with data: use programmable Jupyter notebooks and their libraries for machine learning, visualization, and data analysis " Use Playbooks to perform Security Orchestration, Automation and Response (SOAR) " Save resources by automating responses to low-level events " Create visualizations to spot trends, identify or clarify relationships, and speed decisions " Integrate with partners and other third-parties, including Fortinet, AWS, and Palo Alto
Issuing Body
Made available through: Safari, an O'Reilly Media Company.
Local note
O'Reilly,O'Reilly Online Learning: Academic/Public Library Edition

Also in this Series

Checking series information...

More Like This

Loading more titles like this title...

Citations

APA Citation, 7th Edition (style guide)

Diogenes, Y., DiCola, N., & Trull, J. (2020). Microsoft Azure Sentinel: Planning and implementing Microsoft s cloud-native SIEM solution (1st edition.). Microsoft Press.

Chicago / Turabian - Author Date Citation, 17th Edition (style guide)

Diogenes, Yuri, Nicholas, DiCola and Jonathan, Trull. 2020. Microsoft Azure Sentinel: Planning and Implementing Microsoft S Cloud-native SIEM Solution. Microsoft Press.

Chicago / Turabian - Humanities (Notes and Bibliography) Citation, 17th Edition (style guide)

Diogenes, Yuri, Nicholas, DiCola and Jonathan, Trull. Microsoft Azure Sentinel: Planning and Implementing Microsoft S Cloud-native SIEM Solution Microsoft Press, 2020.

Harvard Citation (style guide)

Diogenes, Y., DiCola, N. and Trull, J. (2020). Microsoft azure sentinel: planning and implementing microsoft s cloud-native SIEM solution. 1st edn. Microsoft Press.

MLA Citation, 9th Edition (style guide)

Diogenes, Yuri,, Nicholas DiCola, and Jonathan Trull. Microsoft Azure Sentinel: Planning and Implementing Microsoft S Cloud-native SIEM Solution 1st edition., Microsoft Press, 2020.

Note! Citations contain only title, author, edition, publisher, and year published. Citations should be used as a guideline and should be double checked for accuracy. Citation formats are based on standards as of August 2021.

Staff View

Grouped Work ID
a44b4600-f00a-72b1-fb46-259113037f80-eng
Go To Grouped Work View in Staff Client

Grouping Information

Grouped Work IDa44b4600-f00a-72b1-fb46-259113037f80-eng
Full titlemicrosoft azure sentinel planning and implementing microsoft s cloud native siem solution
Authordiogenes yuri
Grouping Categorybook
Last Update2024-12-17 08:30:41AM
Last Indexed2024-12-17 08:33:39AM

Book Cover Information

Image Sourcedefault
First LoadedAug 22, 2024
Last UsedNov 8, 2024

Marc Record

First DetectedMar 21, 2023 12:34:37 PM
Last File Modification TimeDec 17, 2024 08:11:12 AM
SuppressedRecord had no items

MARC Record

LEADER03947cam a2200457 a 4500
001on1143014991
003OCoLC
00520241217080952.0
006m     o  d        
007cr cnu||||||||
008200305s2020    xx      o     000 0 eng  
019 |a 1302264451
0248 |a 9780136485506
035 |a (OCoLC)1143014991|z (OCoLC)1302264451
040 |a AU@|b eng|e pn|c AU@|d TOH|d OCLCO|d OCLCF|d LVT|d OCLCO|d OCLCQ|d OCLCO|d OCLCL
049 |a MAIN
08204|a 004.6782|q OCoLC|2 23/eng/20230203
1001 |a Diogenes, Yuri,|e author.
24510|a Microsoft Azure Sentinel :|b Planning and implementing Microsoft s cloud-native SIEM solution /|c Diogenes, Yuri.
250 |a 1st edition.
264 1|b Microsoft Press,|c 2020.
300 |a 1 online resource (209 pages)
336 |a text|b txt|2 rdacontent
337 |a computer|b c|2 rdamedia
338 |a online resource|b cr|2 rdacarrier
347 |a text file
520 |a Microsoft Azure Sentinel Plan, deploy, and operate Azure Sentinel, Microsoft's advanced cloud-based SIEM Microsoft's cloud-based Azure Sentinel helps you fully leverage advanced AI to automate threat identification and response - without the complexity and scalability challenges of traditional Security Information and Event Management (SIEM) solutions. Now, three of Microsoft's leading experts review all it can do, and guide you step-by-step through planning, deployment, and daily operations. Leveraging in-the-trenches experience supporting early customers, they cover everything from configuration to data ingestion, rule development to incident management ... even proactive threat hunting to disrupt attacks before you're exploited. Three of Microsoft's leading security operations experts show how to: " Use Azure Sentinel to respond to today's fast-evolving cybersecurity environment, and leverage the benefits of its cloud-native architecture " Review threat intelligence essentials: attacker motivations, potential targets, and tactics, techniques, and procedures " Explore Azure Sentinel components, architecture, design considerations, and initial configuration " Ingest alert log data from services and endpoints you need to monitor " Build and validate rules to analyze ingested data and create cases for investigation " Prevent alert fatigue by projecting how many incidents each rule will generate " Help Security Operation Centers (SOCs) seamlessly manage each incident's lifecycle " Move towards proactive threat hunting: identify sophisticated threat behaviors and disrupt cyber kill chains before you're exploited " Do more with data: use programmable Jupyter notebooks and their libraries for machine learning, visualization, and data analysis " Use Playbooks to perform Security Orchestration, Automation and Response (SOAR) " Save resources by automating responses to low-level events " Create visualizations to spot trends, identify or clarify relationships, and speed decisions " Integrate with partners and other third-parties, including Fortinet, AWS, and Palo Alto
542 |f Copyright © Microsoft Press
550 |a Made available through: Safari, an O'Reilly Media Company.
588 |a Online resource; Title from title page (viewed March 11, 2020)
590 |a O'Reilly|b O'Reilly Online Learning: Academic/Public Library Edition
650 0|a Microsoft Azure (Computing platform)|9 422702
650 0|a Cloud computing|x Security measures.
7001 |a DiCola, Nicholas,|e author.
7001 |a Trull, Jonathan,|e author.
7102 |a Safari, an O'Reilly Media Company.
758 |i has work:|a Microsoft Azure Sentinel (Text)|1 https://id.oclc.org/worldcat/entity/E39PCFFdq7mbX8RdkK47pQxPpK|4 https://id.oclc.org/worldcat/ontology/hasWork
85640|u https://library.access.arlingtonva.us/login?url=https://learning.oreilly.com/library/view/~/9780136485506/?ar|x O'Reilly|z eBook
936 |a BATCHLOAD
994 |a 92|b VIA
999 |c 289010|d 289010