September 2021
Intermediate to advanced
336 pages
8h 29m
English
Azure Sentinel is a cloud-based SIEM (security information and event management) solution. SIEM solutions have been in existence for a number of years, and their key purpose is to collect and correlate events across an organization’s IT environment to detect anomalous activities that might be indicative of a security breach. These alerts can then be dealt with by a security operations center (SOC) team to investigate, respond, and mitigate the issue that the SIEM has alerted on. Having an effective SIEM is critical to any organization’s security operations; you might have heard the phrase “that’s out of scope… said no attacker ever.” The fact is that attackers will use any vulnerable assets they ...
Read now
Unlock full access