What this book covers
Chapter 1, Preparing for the Microsoft Exam and SC-200 Objectives, gets you started in your preparation for the exam.
Chapter 2, The Evolution of Security and Security Operations, provides a brief history of the evolution of SOC operations.
Chapter 3, Implementing Microsoft Defender for Endpoint, covers working through Microsoft Defender for Endpoint (MDE) deployments.
Chapter 4, Implementing Microsoft Defender for Identity, covers working through Microsoft Defender for Identity (MDI) deployments.
Chapter 5, Understanding and Implementing Microsoft Defender for Cloud (Microsoft Defender for Cloud Standard Tier), covers working through the setup and configuration of Defender for Cloud deployments.
Chapter 6, An Overview: Microsoft Defender for Endpoint Alerts, Incidents, Evidence, and Dashboards, provides a walk-through of alerts in the M365D portal.
Chapter 7, Microsoft Defender for Identity: Alerts and Incidents, provides a walk-through of alerts in the M365D portal.
Chapter 8, Microsoft Defender for Office: Threats to Productivity, provides a walk-through of alerts in the M365D portal.
Chapter 9, Microsoft Defender for Cloud Apps and Protecting your Cloud Apps, provides a walk-through of alerts in the M365D portal.
Chapter 10, Setting Up and Configuring Microsoft Sentinel, provides a walk-through of alerts in the Sentinel portal.
Chapter 11, Advanced Threat Hunting, Microsoft 365 Defender Portal, and Sentinel, provides a walk-through of KQL, queries, and basic threat hunting skills.
Chapter 12, Knowledge Check, provides a knowledge check.