Episode

Microsoft Secure 2023 Ep01: Threat hunting with Microsoft Sentinel

with Rod Trent, Javier Soriano, Ken Lawson, Benjamin Kovacevic

In this Learn Live, you'll learn to proactively identify threat behaviors by using Microsoft Sentinel queries. You'll also learn to use bookmarks and livestream to hunt threats.

Learning objectives

  • Use queries to hunt for threats.
  • Save key findings with bookmarks.
  • Observe threats over time with livestream.

Chapters

  • 00:00 - Introduction
  • 04:19 - Learning objectives
  • 05:59 - What is threat hunting?
  • 09:40 - Why is threat hunting important?
  • 11:19 - How is Microsoft Sentinel different?
  • 12:54 - Demo - Explore creation and management of Microsoft Sentinel threat-hunting queries
  • 25:05 - Knowledge check
  • 27:17 - Save key findings with bookmarks
  • 38:29 - Knowledge check
  • 40:18 - Observe threats over time with livestream
  • 48:08 - Knowledge check
  • 50:13 - Summary and resources

Connect

Beginner
Solution Architect
Azure
Microsoft Sentinel