wwlpublish Threat response with Microsoft Sentinel playbooks - Training
- This module covers creating Microsoft
Sentinel playbooks
toautomate
incident response, including understandingSOAR
capabilities, usingLogic Apps connectors
, and executingplaybooks
on demand.
‣
Introduction
‣
Exercise - Set up the Azure environment
‣
Understand incidents
‣
Incident evidence and entities
‣
Incident management
‣
Exercise - Investigate an incident
‣