Connect threat indicators to Microsoft Sentinel

Intermediate
Security Operations Analyst
Microsoft Defender
Microsoft Sentinel
Microsoft Defender for Threat Intelligence

Learn how to connect Threat Intelligence Indicators to the Microsoft Sentinel workspace using the provided data connectors.

Learning objectives

Upon completion of this module, the learner is able to:

  • Configure the Defender Threat Intelligence connector in Microsoft Sentinel
  • Configure the TAXII connector in Microsoft Sentinel
  • Configure the Threat Intelligence Upload API connector in Microsoft Sentinel
  • View threat indicators in Microsoft Sentinel

Prerequisites

Basic experience with Microsoft Azure and Microsoft Defender services