ycliper

Популярное

Музыка Кино и Анимация Автомобили Животные Спорт Путешествия Игры Юмор

Интересные видео

2025 Сериалы Трейлеры Новости Как сделать Видеоуроки Diy своими руками

Топ запросов

смотреть а4 schoolboy runaway турецкий сериал смотреть мультфильмы эдисон
Скачать

Automate Incident Response with Microsoft Sentinel Playbooks | Step by Step Demo

Автор: Cloud360 Training

Загружено: 2025-05-17

Просмотров: 4327

Описание: Welcome to this in-depth tutorial on how to automate incident response using Microsoft Sentinel Playbooks! In this step-by-step demo, you'll learn how to streamline your security operations, reduce response time, and improve your organization's threat mitigation strategy using Azure Logic Apps and Microsoft Sentinel.

Whether you're a SOC analyst, security engineer, or Azure administrator, this video will guide you through:
✅ What are Microsoft Sentinel Playbooks?
✅ How to create and customize playbooks using Logic Apps
✅ Automating responses to common incidents (e.g., phishing, brute force, risky sign-ins)
✅ Connecting playbooks to Sentinel analytics rules
✅ Best practices and real-world use cases

Timestamps:
00:00.000 - Introduction
00:20.000 - Playbooks & Logic Apps Overview
01:00.000 - Security Operation Model
01:56.000 - Start Playbook Demo
04:00.000 - Setup Notify via Email
05:00.000 - Open Logic App Designer
05:36.000 - Add Sentinel Alert Trigger
06:40.000 - Setup Sentinel API Connection
07:20.000 - Get Alert Details
08:00.000 - Use Dynamic Content
09:00.000 - Add Outlook Email Action
09:47.000 - Email Subject & Body
11:04.000 - Final Settings & Recap
11:46.000 - View Playbook in Sentinel
12:01.000 - Link to Analytics Rule
13:00.000 - Sign-in Attempt (Disabled Account)
14:31.000 - Trigger the Incident
16:08.000 - Incident & Alert Confirmed
17:00.000 - Email Received (Demo End)
Tools Covered:

Microsoft Sentinel (Azure-native SIEM/SOAR)
Azure Logic Apps


Why Automate Incident Response?
✔️ Reduce Mean Time to Respond (MTTR)
✔️ Eliminate repetitive tasks
✔️ Improve SOC efficiency
✔️ Ensure consistent incident handling
✔️ Respond to threats in real-time

Learn More:

Microsoft Sentinel Documentation: https://learn.microsoft.com/en-us/azu...

Azure Logic Apps Documentation: https://learn.microsoft.com/en-us/azu...

📌 Don’t forget to LIKE, SUBSCRIBE, and turn on notifications so you never miss an update on Microsoft Security, Azure tutorials, and cybersecurity best practices!

#microsoftsentinel #incidentresponse #azuresecurity #SOCAutomation #LogicApps #cybersecurity #SentinelPlaybooks #AutomateSecurity #AzurePlaybooks #SIEM #SOAR #azuretutorial #cloudsecurity #CyberSecurityDemo

Не удается загрузить Youtube-плеер. Проверьте блокировку Youtube в вашей сети.
Повторяем попытку...
Automate Incident Response with Microsoft Sentinel Playbooks | Step by Step Demo

Поделиться в:

Доступные форматы для скачивания:

Скачать видео

  • Информация по загрузке:

Скачать аудио

Похожие видео

SC-200: Enrich Detections with Microsoft Sentinel Watchlist

SC-200: Enrich Detections with Microsoft Sentinel Watchlist

Microsoft Sentinel | Automated Responses to Threats | Automation Rules | Playbooks | Sentinel SOAR

Microsoft Sentinel | Automated Responses to Threats | Automation Rules | Playbooks | Sentinel SOAR

How to Clone Yourself as a Business Owner (The Simple System)

How to Clone Yourself as a Business Owner (The Simple System)

Microsoft Sentinel in just 30 minutes

Microsoft Sentinel in just 30 minutes

Microsoft Sentinel for Beginners | Full Hands-on Security Masterclass

Microsoft Sentinel for Beginners | Full Hands-on Security Masterclass

Hyper‑V to Azure Disaster Recovery | Learn failover and failback | Azure Site Recovery Step‑by‑Step

Hyper‑V to Azure Disaster Recovery | Learn failover and failback | Azure Site Recovery Step‑by‑Step

Microsoft Sentinel Training | Azure Sentinel Tutorial | Microsoft Sentinel Step-by-Step Guide

Microsoft Sentinel Training | Azure Sentinel Tutorial | Microsoft Sentinel Step-by-Step Guide

#712 Wojna na Bliskim Wschodzie. Eskalacja w regionie. Trump: 4-5 tygodni. Co zaatakował Iran.

#712 Wojna na Bliskim Wschodzie. Eskalacja w regionie. Trump: 4-5 tygodni. Co zaatakował Iran.

SC-200 Exam Prep 2025 – Questions & Answers | Microsoft Security Operations Analyst

SC-200 Exam Prep 2025 – Questions & Answers | Microsoft Security Operations Analyst

Incident Response: Investigating a Ransomware Incident Pt 2 | Virtual Ninja Training w/ Heike Ritter

Incident Response: Investigating a Ransomware Incident Pt 2 | Virtual Ninja Training w/ Heike Ritter

Microsoft Sentinel: Step by Step Full Tutorial (follow along)

Microsoft Sentinel: Step by Step Full Tutorial (follow along)

01. Введение в Azure Logic Apps

01. Введение в Azure Logic Apps

Getting started with Microsoft Sentinel Automation (2023 edition)

Getting started with Microsoft Sentinel Automation (2023 edition)

How To Pass ANY Azure Certification in 2024 | Complete Guide

How To Pass ANY Azure Certification in 2024 | Complete Guide

SOAR Interview Questions and Answers | Security Orchestration, Automation and Response | SOAR Course

SOAR Interview Questions and Answers | Security Orchestration, Automation and Response | SOAR Course

Как расследовать инцидент? | Microsoft Sentinel

Как расследовать инцидент? | Microsoft Sentinel

The Beginners Guide to Microsoft Purview

The Beginners Guide to Microsoft Purview

Как защитить API: Уязвимости и решения

Как защитить API: Уязвимости и решения

Real Time Threat Detection - Microsoft Sentinel - Incident Creation Rule

Real Time Threat Detection - Microsoft Sentinel - Incident Creation Rule

Threat response with Azure Sentinel playbooks | LRN253

Threat response with Azure Sentinel playbooks | LRN253

© 2025 ycliper. Все права защищены.



  • Контакты
  • О нас
  • Политика конфиденциальности



Контакты для правообладателей: [email protected]