[SPONSOR CO-LED] Better Together: Next Gen SOC Powered by Microsoft Sentinel and Tanium

This lab focuses on integrating Tanium with Microsoft Sentinel to enhance SOC (Security Operations Center) capabilities. The integration utilizes Tanium connectors and Sentinel's real-time capabilities to offer several benefits:

Data Integration: Students will learn how to send data from Tanium to Sentinel and automatically create incidents using the Tanium connection.
Incident Management: The lab involves leveraging both automated and manual incident actions running a custom PwC playbook, utilizing Tanium as a data source.
Real-time Remediation: Students will use Tanium's API for real-time remediation actions within Sentinel using custom PwC Tanium packages.

Pre-Req(s): Practical experience with Tanium, speciically Threat Response; Basic understanding of Microsoft Sentinel

Sponsor Co-Led by PwC

Additional details:

Session Tag
Endpoint Management, Incident Response, PwC and Tanium, Sponsor Co-Led, XEM Core
Session Type
Virtual, Self-Service Lab, Sponsor Co-Led
Modules
Asset, Comply, Core, Microsoft, Threat Response
Difficulty
Intermediate
Focus
Administrator, Advanced Content, Integrations, Security Practitioner
Industry
Agriculture, Mining & Raw Materials, Construction, Education, Energy, Utilities & Waste, Entertainment, Facilities, Lodging & Resorts, Financial Services, Government - Federal, Government - Local, Healthcare & Life Sciences, Holding Companies & Conglomerates, Hospitals & Physicians Clinics, Insurance, Law Firms & Legal Services, Manufacturing, Construction & Wholesale Trade, Media & Internet, Media & Telecommunications, Non-Profit & Charitable Organizations, Professional & Business Services, Real Estate, Retail & Hospitality, Software & Technology, Transportation Services, Other, Agriculture, Mining & Raw Materials, Energy, Utilities & Waste, Facilities, Lodging & Resorts, Clinics, Manufacturing, Construction & Wholesale, Trade, Transportation Service, Hospitals & Physicians, Construction & Wholesale Trade