From the course: Microsoft Azure: Security Monitoring and Threat Detection

Unlock the full course today

Join today to access over 24,900 courses taught by industry experts.

Deploy a Microsoft Sentinel solution

Deploy a Microsoft Sentinel solution

- [Instructor] Microsoft Sentinel with SIEM Migration provides a proactive threat detection and there are a few steps that you need to take before you can have this solution configured. One of it is fulfilling the prerequisite requirements. We'll see the prerequisite when we launch the Azure environment. Secondly, translate Splunk detection rules. Then start the SIEM migration experience right on your Microsoft Sentinel environment. Then you upload your Splunk detections by connecting to your Splunk platform. So for this particular solution, you need to have an active Splunk account, either a Splunk enterprise account or a Splunk Cloud platform account. Then next, you configure your rules and you deploy analytic rules. Then validate, enable rules. If you do not know how to go about understanding the Splunk enterprise or having a migration or integration with your Azure, please refer to the course integrating Splunk with Microsoft Purview. This course is on LinkedIn Learning right…

Contents