July 2023
Beginner to intermediate
338 pages
7h 26m
English
In the previous chapter, we introduced Microsoft Sentinel automation and its main elements, permissions, and building blocks.
In this chapter, we will work through some hands-on examples. But first, we will guide you on how to enable Microsoft Sentinel to perform these exercises on your own, then we will go through our two hands-on examples – the enrichment of incidents with IP and URL details.
This chapter will go through the following topics:
When a new incident/case is detected, ...
Read now
Unlock full access