[SPONSOR CO-LED] Better Together: Next Gen SOC Powered by Microsoft Sentinel and Tanium
This lab focuses on integrating Tanium with Microsoft Sentinel to enhance SOC (Security Operations Center) capabilities. The integration utilizes Tanium connectors and Sentinel's real-time capabilities to offer several benefits:
Data Integration: Students will learn how to send data from Tanium to Sentinel and automatically create incidents using the Tanium connection.
Incident Management: The lab involves leveraging both automated and manual incident actions running a custom PwC playbook, utilizing Tanium as a data source.
Real-time Remediation: Students will use Tanium's API for real-time remediation actions within Sentinel using custom PwC Tanium packages.
Pre-Req(s): Practical experience with Tanium, speciically Threat Response; Basic understanding of Microsoft Sentinel
Sponsor Co-Led by PwC
Additional details: