logo
logo
x
바코드검색
BOOKPRICE.co.kr
책, 도서 가격비교 사이트
바코드검색

인기 검색어

실시간 검색어

검색가능 서점

도서목록 제공

Cloud Defense Strategies with Azure Sentinel: Hands-On Threat Hunting in Cloud Logs and Services

Cloud Defense Strategies with Azure Sentinel: Hands-On Threat Hunting in Cloud Logs and Services (Paperback)

Marshall Copeland (지은이)
Apress
109,350원

일반도서

검색중
서점 할인가 할인률 배송비 혜택/추가 실질최저가 구매하기
89,660원 -18% 0원
4,490원
85,170원 >
yes24 로딩중
교보문고 로딩중
notice_icon 검색 결과 내에 다른 책이 포함되어 있을 수 있습니다.

중고도서

검색중
서점 유형 등록개수 최저가 구매하기
로딩중

eBook

검색중
서점 정가 할인가 마일리지 실질최저가 구매하기
로딩중

책 이미지

Cloud Defense Strategies with Azure Sentinel: Hands-On Threat Hunting in Cloud Logs and Services
eBook 미리보기

책 정보

· 제목 : Cloud Defense Strategies with Azure Sentinel: Hands-On Threat Hunting in Cloud Logs and Services (Paperback) 
· 분류 : 외국도서 > 컴퓨터 > 프로그래밍 > 마이크로소프트 프로그래밍
· ISBN : 9781484271315
· 쪽수 : 285쪽
· 출판일 : 2021-10-02

목차

Part I (page count 100)

Goals: Introduction to Azure Sentinel es with technical featurthat benefit the business.  Initial configuration using Azure subscription data connectors, discuss 3rd party integration and alignment with other Azure Security Services. XDR introduction, why it is an industry standard and how to use it in Sentinel.

Sub-Topics

1.      Overview of Technical Features

2.      Benefit and cost support for the business, initial configuration

3.      Azure Defender support into Azure Sentinel

4.      Azure Security Center support into Azure Sentinel

Chapter 1 Azure Sentinel Overview

Platform benefits, SOC security reference, alignment to Cyber framework, Log Analytics planning, cost structure

Chapter 2 Other Azure Security Services

Azure Monitor, Azure Security Center, Azure Defender, working together to support Azure Sentinel

Chapter 3   Azure Sentinel XDR Capabilities

Integration with Azure Security standards, protection for additional Azure workloads, guidance for XDR and how it should be used to modernize security operations.

Part II (page count 100)

Goals: Deployment best practices, platform integration and support for AWS

Sub - Topics  

1.       Enable integration with 3rd party security appliances

2.      Configure support for AWS

3.      Multi-Azure Tenant deployment best practices

 

Chapter 4 Data Connection

Single Tenant: Data connectors native, Log Analytics storage options, 3rd party data, KQL validation processes, AWS connection, Service NOW integration

Chapter 5 Threat Intelligence (TI)

TI connectors and feeds, Sentinel Workbooks introduction, Sentinel Notebook usage, Python integration

Chapter 6 Multi-Tenant Architecture

Challenges and cost of Azure log analytics workspace, KQL modification requirements, SOC alignment needed

Part III (page count 100)

Goals: Improve Cyber Security Threat Hunting Techniques

Sub - Topics: 

1.      Threat Hunting with KQL Language deep dive with examples

2.      Integration with MITRE attack Matrix and support for TAXII

3.      Data flow examples: User logon, track and validate. Stop network connection to China, etc.

4.      Configuration changes needed for multiple Sentinel deployments

 

Chapter 7 Threat Hunting with Azure Sentinel

KQL Hunting introduction, custom queries, Sentinel bookmarks, Sentinel notebooks

 

Chapter 8 Introduction to MITRE Matrix

MITRE Attack Matrix overview and usage, STIX defined, TAXII defined, free TI -vs- service SLA

 

Chapter 9 Azure Sentinel Operations

Daily, Weekly, Monthly tasks, SOC engineer alignment, Continued SOC operations support from official Microsoft supported forum

Chapter Appendix:

Chapter Goal: Where to gain additional knowledge for Azure Sentinel

No of pages: 20

Sub - Topics:

1.      Guidance to continue Azure Sentinel skill improvement

2.      Relating information to Cyber Security standards

이 포스팅은 쿠팡 파트너스 활동의 일환으로,
이에 따른 일정액의 수수료를 제공받습니다.
이 포스팅은 제휴마케팅이 포함된 광고로 커미션을 지급 받습니다.
도서 DB 제공 : 알라딘 서점(www.aladin.co.kr)
최근 본 책