Microsoft Security Operations Analyst (SC-200)
About This Course
This comprehensive course empowers aspiring security professionals with the skills to formulate and implement a robust Microsoft 365 security strategy. Participants will delve into the complexities of Microsoft Defender XDR and Microsoft Purview, learning to mitigate threats effectively and leverage these tools for enhanced security operations. The course covers a wide array of essential topics, from introduction to Microsoft 365 threat protection and incident mitigation using Microsoft 365 Defender, to advanced practices in identity protection, risk remediation, and securing cloud apps and services. Through practical exercises and in-depth discussions, learners will explore the integration of Microsoft Defender for Identity and Cloud Apps, data loss prevention techniques, insider risk management, and the critical use of audit features for threat investigation.
Building on foundational knowledge, the course further explores the mitigation of threats using Microsoft Defender for Endpoint and Cloud, highlighting key strategies for cloud workload protections and securing non-Azure resources. Advanced modules introduce learners to Microsoft Sentinel, focusing on creating queries with Kusto Query Language, configuring the Sentinel environment for optimal threat detection and response, and performing threat hunting. This course is designed to equip participants with the ability to evaluate security controls, develop strategies to bridge security gaps, and implement comprehensive security initiatives across their organization, ensuring a secure and compliant Microsoft 365 environment.
What You'll Learn
LO1: Formulate comprehensive Microsoft 365 security goals and establish business standards with overarching security vision.
LO2: Communicate effective Microsoft 365 security policies and practices and manage compliance with best practices and technological advancements.
LO3: Evaluate existing Microsoft 365 security controls against business risks and costs and develop strategies to resolve identified security gaps.
LO4: Implement organization-wide Microsoft 365 security initiatives, assessing and addressing the impact of security gaps.
Topics Covered:
LU1: Mitigate threats using Microsoft Defender XDR and mitigate threats using Microsoft Purview
LU2: Mitigate threats using Microsoft Defender for Endpoint and Mitigate threats using Microsoft Defender for Cloud
LU3: Create queries for Microsoft Sentinel using Kusto Query Language (KQL) and Configure your Microsoft Sentinel environment
LU4: Create detections and perform investigations using Microsoft Sentinel and Perform threat hunting in Microsoft Sentinel
Entry Requirements
Knowledge and Skills
• Able to operate using computer functions
• Able to operate using computer functions
• Minimum 3 GCE ‘O’ Levels Passes including English or WPL Level 5 (Average of Reading, Listening, Speaking & Writing Scores)
Attitude
• Positive Learning Attitude
• Enthusiastic Learner
Experience
• Minimum of 1 year of working experience
Target age group: 21-65 years old