Search icon CANCEL
Subscription
0
Cart icon
Cart
Close icon
You have no products in your basket yet
Save more on your purchases!
Savings automatically calculated. No voucher code required
Arrow left icon
All Products
Best Sellers
New Releases
Books
Videos
Audiobooks
Learning Hub
Newsletters
Free Learning
Arrow right icon
Arrow up icon
GO TO TOP
Microsoft Security, Compliance, and Identity Fundamentals Exam Ref SC-900

You're reading from  Microsoft Security, Compliance, and Identity Fundamentals Exam Ref SC-900

Product type Book
Published in May 2022
Publisher Packt
ISBN-13 9781801815994
Pages 404 pages
Edition 1st Edition
Languages
Author (1):
Dwayne Natwick Dwayne Natwick
Profile icon Dwayne Natwick
Toc

Table of Contents (24) Chapters close

Preface 1. Section 1: Exam Overview
2. Chapter 1: Preparing for Your Microsoft Exam 3. Section 2: The Key Concepts of Security, Compliance, and Identity
4. Chapter 2: Describing Security Methodologies 5. Chapter 3: Understanding Key Security Concepts 6. Chapter 4: Key Microsoft Security and Compliance Principles 7. Section 3: The Microsoft Identity Management Solutions
8. Chapter 5: Defining Identity Principles/Concepts and the Identity Services within Azure AD 9. Chapter 6: Describing the Authentication and Access Management Capabilities of Azure AD 10. Chapter 7: Describing the Identity Protection and Governance Capabilities of Azure AD 11. Section 4: The Microsoft Security Solutions for Microsoft 365 and Azure
12. Chapter 8: Describing Basic Security Services and Management Capabilities in Azure 13. Chapter 9: Describing Security Management and Capabilities of Azure 14. Chapter 10: Describing Threat Protection with Microsoft 365 Defender 15. Chapter 11: Describing the Security Capabilities of Microsoft Sentinel 16. Chapter 12: Describing Security Management and the Endpoint Security Capabilities of Microsoft 365 17. Section 5: The Microsoft Compliance Monitoring Capabilities within Microsoft 365 and Azure
18. Chapter 13: Compliance Management Capabilities in Microsoft 19. Chapter 14: Describing Information Protection and Governance Capabilities of Microsoft 365 20. Chapter 15: Describing Insider Risk, eDiscovery, and Audit Capabilities in Microsoft 365 21. Chapter 16: Describing Resource Governance Capabilities in Azure 22. Chapter 17: Final Assessment/ Mock Exam 23. Other Books You May Enjoy

Describe incidents and incident management capabilities

As stated at the beginning of the section describing Secure Score, the Microsoft 365 Defender portal can be used for security posture management within your entire Microsoft 365 tenant for identity, devices, and applications. This includes incidents created based on potential threats and vulnerabilities and the management of those incidents.

Within the Microsoft 365 Defender portal, there is an Incidents & alerts menu that will assign incidents on potential threats that need further investigation. You can manage these incidents through the incident response process within the portal, as shown in Figure 12.18:

Figure 12.18 – Microsoft 365 Defender – Incidents

You can also configure alerts based on incidents to assign to the specific incident response teams. The dashboard for Alerts is shown in Figure 12.19:

Figure 12.19 – Microsoft 365 Defender –...

lock icon The rest of the chapter is locked
Register for a free Packt account to unlock a world of extra content!
A free Packt account unlocks extra newsletters, articles, discounted offers, and much more. Start advancing your knowledge today.
Unlock this book and the full library FREE for 7 days
Get unlimited access to 7000+ expert-authored eBooks and videos courses covering every tech area you can think of
Renews at €14.99/month. Cancel anytime}