Тёмный
No video :(

Azure Sentinel Webinar: The Information Model: Understanding Normalization in Azure Sentinel 

Microsoft Security
Подписаться 45 тыс.
Просмотров 8 тыс.
50% 1

Working with multiple data types and sources is a challenge: Understanding different schemas and creating a unique set of analytics rules, workbooks, and hunting queries for each. This webinar will enable you to learn about the Azure Sentinel Information Model (ASIM), which combines schema definitions, parsers, and normalized content to allow source agnostic content and simplify analyst use of the Azure Sentinel’s data.
2:38 - Introduction
4:39 - ASIM Overview
18:09 - Demo
24:51 - Understanding the ASIM Schemas
41:10 - Demo
50:08 - Normalization in Action: Detections and Hunting
53:50 - Q&A/Outro
#MicrosoftSecurity

Опубликовано:

 

15 авг 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии    
Далее
ROLLING DOWN
00:20
Просмотров 7 млн
Introduction to Azure Sentinel. Part 1 - Foundations
54:21
Azure Sentinel webinar: Cloud & On-Premises architecture
1:29:22
Mohammad bin Salman: Prince With Two Faces
54:00
Просмотров 2,8 млн
A closer look at Microsoft Entra Internet Access
29:59