arrow_backالمكتبة
KORRA.TRAINING

Microsoft SC-200 — The Analyst's Exam, From the Log Up

The SOC analyst's certification, taught from the log up: the query language from nothing on data shaped like real tickets, what a detection rule, incident and entity are made of, and the four scenario shapes the exam keeps reusing — with every query actually run and every error real. An independent course, not affiliated with or endorsed by Microsoft.

4 وحدات · 12 دروس · 6h 57m
افتحها بالعضويةlock
محتويات الدورة
1 The Exam, and the Stack It Assumes 3 دروس · 1h 29m lock
  • play_circle Four Verbs, One Blueprint 20 د
  • play_circle Three Surfaces, One Pipeline 24 د
  • play_circle Which Layer Answers This? 45 د
2 The Query Language From Nothing 3 دروس · 1h 45m lock
  • play_circle A Table and a Bar 26 د
  • play_circle Count, Then Count By Something 24 د
  • play_circle Make the Log Say It 55 د
3 A Detection Is a Query on a Clock 3 دروس · 1h 36m lock
  • play_circle A Detection Is a Query on a Clock 24 د
  • play_circle What an Alert Becomes 22 د
  • play_circle Schedule It, Then Find the Blind Spot 50 د
4 Automation, and the Four Shapes 3 دروس · 2h 7m lock
  • play_circle Two Kinds of Automatic 22 د
  • play_circle Detect It, Then Tune It 50 د
  • play_circle Hunt It, Then Hand It Off 55 د
workspace_premium

هذه الدورة جزء من العضوية.

افتح كل درس في كل دورة — إضافة إلى جلسات جماعية غير محدودة ورصيد جلساتك الفردية 1-on-1.

اطّلع على العضوية
ar