Section 1: Design and Implementation

In this section, you will get an overview of Microsoft Sentinel, including the current cloud landscape, the cloud security reference framework, Security Operations Center (SOC) platform components, and how to map the architecture. You will also learn about the Azure Monitor Log Analytics resource, including planning your Log Analytics instance, how to create a new instance, and attaching it to Microsoft Sentinel.

This section contains the following chapters:

  • Chapter 1, Getting Started with Microsoft Sentinel
  • Chapter 2, Azure Monitor – Introduction to Log Analytics

Get Microsoft Sentinel in Action - Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.