Cantitate/Preț
Produs

Exam Ref SC-200 Microsoft Security Operations Analyst

Autor Yuri Diogenes, Jake Mowrer, Sarah Young
en Limba Engleză Paperback – 8 sep 2021

Observăm că volumul Exam Ref SC-200 Microsoft Security Operations Analyst debutează cu o orientare clară către resursele practice de examinare, oferind acces la scenarii de tip „thought experiment” menite să testeze deciziile critice ale unui analist de securitate. Dacă Microsoft Security Operations Analyst Exam Ref SC-200 Certification Guide de Trevor Stuart v-a oferit cadrul teoretic și pașii de configurare, această carte publicată de Microsoft Press oferă instrumentele practice de evaluare a competențelor, fiind focalizată pe demonstrarea stăpânirii mediului de lucru în situații reale de criză. Notăm cu interes continuitatea în opera autorului Yuri Diogenes. În timp ce lucrarea sa anterioară, Microsoft Azure Security Infrastructure, se concentra pe planificarea și controlul infrastructurii cloud, volumul de față rafinează această expertiză către zona operațională de detectare și răspuns la incidente. Structura cărții este riguros segmentată în trei secțiuni care corespund obiectivelor examenului: atenuarea amenințărilor prin Microsoft 365 Defender, utilizarea Microsoft Defender for Cloud și implementarea soluțiilor SIEM prin Microsoft Sentinel. Progresia materialului indică o acoperire exhaustivă a ecosistemului de securitate Microsoft, trecând de la protecția punctelor terminale la monitorizarea întregii infrastructuri hibride. Tonul este tehnic și aplicat, evitând generalitățile și concentrându-se pe interfața de administrare și pe fluxurile de lucru necesare pentru remedierea atacurilor. Este un ghid esențial pentru administratorii Windows care doresc să facă pasul spre rolul de Security Operations Analyst (SecOps), oferind o metodologie clară de abordare a incidentelor de securitate.

Citește tot Restrânge

Preț: 23762 lei

Preț vechi: 29702 lei
-20%

Puncte Express: 356

Carte disponibilă

Livrare economică 02-16 octombrie
Livrare express 17-23 septembrie pentru 4120 lei

Livrare prin curier în România Termenul estimat este afișat lângă disponibilitate.
Transport gratuit de la 40000 lei Plată online sau ramburs, în funcție de opțiunile comenzii.
Retur gratuit în 14 zile Comandă securizată și suport în română.

Specificații

ISBN-13: 9780137568352
ISBN-10: 0137568355
Pagini: 336
Dimensiuni: 195 x 235 x 19 mm
Greutate: 0.64 kg
Ediția:1. Auflage
Editura: Pearson Education

De ce să citești această carte

Recomandăm această lucrare profesioniștilor IT care vizează certificarea SC-200. Cititorul câștigă o înțelegere profundă a modului în care Sentinel și Defender colaborează pentru a securiza mediile enterprise. Este un instrument indispensabil deoarece transformă teoria securității în decizii tactice rapide, oferind contextul necesar pentru a gestiona atacurile active într-un mediu Microsoft hibrid.


Despre autor

Yuri Diogenes, M.S. și MBA, este un autor prolific și vorbitor tehnic, cu o carieră marcată de peste zece volume publicate în domeniul securității tehnologice în SUA și Brazilia. Expertiza sa este consolidată de experiența ca profesor universitar și instructor certificat. În cadrul Microsoft Press, acesta s-a specializat în ghiduri de referință pentru examenele de certificare Azure și Security Operations. Pe lângă cariera academică și tehnică, Yuri este cunoscut pentru disciplina sa personală, fiind competitor în cadrul National Physique Committee (NPC) după o transformare fizică remarcabilă.


Descriere scurtă

Prepare for Microsoft Exam SC-200--and help demonstrate your real-world mastery of skills and knowledge required to work with stakeholders to secure IT systems, and to rapidly remediate active attacks. Designed for Windows administrators, Exam Ref focuses on the critical thinking and decision-making acumen needed for success at the Microsoft Certified Associate level. Focus on the expertise measured by these objectives:
  • Mitigate threats using Microsoft 365 Defender
  • Mitigate threats using Azure Defender
  • Mitigate threats using Azure Sentinel
This Microsoft Exam Ref:
  • Organizes its coverage by exam objectives
  • Features strategic, what-if scenarios to challenge you
  • Assumes you have experience with threat management, monitoring, and/or response in Microsoft 365 environments
About the Exam Exam SC-200 focuses on knowledge needed to detect, investigate, respond, and remediate threats to productivity, endpoints, identity, and applications; design and configure Azure Defender implementations; plan and use data connectors to ingest data sources into Azure Defender and Azure Sentinel; manage Azure Defender alert rules; configure automation and remediation; investigate alerts and incidents; design and configure Azure Sentinel workspaces; manage Azure Sentinel rules and incidents; configure SOAR in Azure Sentinel; use workbooks to analyze and interpret data; and hunt for threats in the Azure Sentinel portal. About Microsoft Certification Passing this exam fulfills your requirements for the Microsoft 365 Certified: Security Operations Analyst Associate certification credential, demonstrating your ability to collaborate with organizational stakeholders to reduce organizational risk, advise on threat protection improvements, and address violations of organizational policies. See full details at: microsoft.com/learn

Cuprins

1. Mitigate Threats Using Microsoft 365 Defender
2. Mitigate Threats Using Microsoft Defender for Cloud
3. Mitigate Threats Using Microsoft Sentinel

Notă biografică

YURI DIOGENES is a Senior Content Developer on the CSI Enterprise Mobility and Security Team, focusing on enterprise mobility solutions, Azure Security Center, and OMS Security. Previously, Yuri worked at Microsoft as a writer for the Windows Security team and as a Support Escalation Engineer for the CSS Forefront team. He has a Master of Science degree in Cybersecurity Intelligence and Forensics from Utica College and an MBA from FGF in Brazil, and he holds several industry certifications. He is co-author of Enterprise Mobility Suite–Managing BYOD and Company-Owned Devices (Microsoft Press, 2015), Microsoft Forefront Threat Management Gateway (TMG) Administrator’s Companion (Microsoft Press, 2010), and three other Forefront titles from Microsoft Press.DR. THOMAS SHINDER is a program manager in Azure Security Engineering and a 20-year veteran in IT security. Tom is best known for his work with ISA Server and TMG, publishing nine books on those topics. He was also the leading voice at ISAserver.org. After joining Microsoft in 2009, Tom spent time on the UAG DirectAccess team and then took a 3-year vacation from security to be a cloud infrastructure specialist and architect. He’s now back where he belongs in security, and spends a good deal of time hugging his Azure Security Center console and hiding his secrets in Azure Key Vault.DEBRA LITTLEJOHN SHINDER, MCSE, is a former police officer and police academy instructor who is self-employed as a technol¿ogy consultant, trainer, and writer, specializing in network and cloud security. She has authored a number of books, including Scene of the Cybercrime: Computer Forensics Handbook (Syngress Publishing, 2002) and Computer Networking Essentials (Cisco Press, 2001). She has co-authored more than 20 additional books and worked as a tech editor, developmental editor, and contributor to more than 15 books. Deb is a lead author for WindowSecurity.com and WindowsNetworking.com, and a long-time contributor to the GFI Software blog and other technology publications, with more than 1,500 published articles in print magazines and on websites. Deb focuses on Microsoft products, and has been awarded the Microsoft MVP (Most Valuable Professional) award in the field of enterprise security for 14 years in a row. She lives and works in the Dallas-Fort Worth area and has taught law enforcement, computer networking, and security courses at Eastfield College in Mesquite, Texas. She currently sits on the advisory board of the Eastfield Criminal Justice Training Center Police Academy.