К содержимому
learnspaceYOUR NEXT CHAPTER
ПРОСТРАНСТВО ОБУЧЕНИЯ
ГлавнаяКаталог курсовМоё обучениеCoursera

Знания без границ

Учитесь у лучших университетов и компаний мира.

Открыть Coursera
Интеграция
Пространство университета
Моё пространствоСтраница курса
↵
ЯЛичный кабинетСтудент
© 2026 LearnSpaceКаждый день — возможность узнать больше.Помощь
Microsoft Defender XDR for Security Analysts · LearnSpace
Назад в каталог
courseraIT и технологии

Microsoft Defender XDR for Security Analysts

Курс от Whizlabs
Средний≈ 5.1 чАнглийский
О курсеНавыкиПрограммаПреподаватели

О курсе

Welcome to Microsoft Defender XDR for Security Analysts Welcome to Microsoft Defender XDR for Security Analysts, a hands-on course designed for security analysts, SOC professionals, incident responders, and cybersecurity practitioners who want to strengthen their threat detection, investigation, and response capabilities using Microsoft Defender XDR. This course focuses on how Microsoft Defender XDR provides unified threat protection across identities, endpoints, email, applications, and cloud workloads. You’ll learn how security teams leverage Microsoft Defender XDR to detect sophisticated attacks, investigate incidents, automate responses, and improve organizational security posture. You’ll begin by exploring the fundamentals of Microsoft Defender XDR, its architecture, benefits, and integration with Microsoft Sentinel. From there, you’ll learn how to configure alerts, investigate incidents, utilize Automated Investigation and Response (AIR), and implement advanced detection and security optimization techniques. Through concept-driven lessons, practical demonstrations, and real-world security scenarios, you’ll gain hands-on knowledge of modern security operations and incident response workflows using Microsoft’s extended detection and response platform. Recommended Background * Basic understanding of cybersecurity concepts and threat landscapes. * Familiarity with Microsoft 365 security technologies is helpful. * Experience with security operations, monitoring, or incident response is beneficial. * General understanding of cloud security and endpoint protection concepts. * Interest in Security Operations Center (SOC) workflows and threat hunting.By the End of This Course, You Will Be Able To: * Understand the architecture, capabilities, and benefits of Microsoft Defender XDR. * Configure and manage alerts, incidents, and threat analytics within Microsoft Defender XDR. * Investigate security incidents and perform threat analysis using Defender XDR tools and workflows. * Implement Automated Investigation and Response (AIR) to improve security operations efficiency. * Create custom detection rules, tune alerts, and optimize threat detection strategies. * Apply Data Loss Prevention (DLP) concepts and align security solutions using Microsoft Cybersecurity Reference Architecture (MCRA). * Integrate Microsoft Defender XDR with Microsoft Sentinel for centralized security monitoring and incident management. * Strengthen organizational security posture through proactive threat detection and response practices.

Навыки, которые вы освоите

Data Loss PreventionThreat DetectionIncident ManagementEndpoint Detection and ResponseIncident ResponseCyber Threat HuntingContinuous MonitoringEndpoint SecurityThreat ManagementComputer Security Incident ManagementEvent MonitoringCyber Threat IntelligenceEnterprise ArchitectureSecurity Information and Event Management (SIEM)

Программа курса

2 модулей · 26 учебных материалов

01Getting Started with Microsoft Defender XDR11 материалов

Introduction to Microsoft Defender XDR and Security Operations

Welcome to the CourseЧтениеGetting Started with Microsoft Defender XDR- Course OverviewЧтениеWhat is Microsoft Defender XDR?ВидеоKey Benefits of Microsoft Defender XDRВидео

Учитесь у экспертов

Whizlabs Instructor

Преподаватель курса

Microsoft Defender XDR for Security Analysts
В каталоге вашей программы

Инвестируйте в себя

Новые знания — в удобное для вас время.

Начать на Coursera

Обучение откроется на Coursera
в новой вкладке

Обучение на Coursera

≈ 5.1 ч

2 модулей

Язык: Английский

Часть программы вашего университета
Microsoft Defender XDR vs. Traditional Security ToolsВидео
Threat Analytics OverviewВидео
Creating Lab Environment - Step by StepВидео
Connecting Microsoft Defender XDR to Microsoft SentinelВидео
Introduction to Microsoft Defender XDR and Security Operations- Practice AssessmentЗадание
Meet and GreetОбсуждение
Investigating Threats with Microsoft Defender XDRDIALOGUE
02Proactive Threat Detection & Incident Response with Microsoft Defender XDR15 материалов

Incident Detection,Investigation,and Automated Response

Proactive Threat Detection & Incident Response with Microsoft Defender XDR- OverviewЧтениеAlert Configuration & Notifications - IncidentsВидеоAlert Configuration & Notifications - Threat AnalyticsВидеоAutomated Investigation & Response (AIR) - TheoryВидеоAutomated Investigation & Response (AIR) - DemoВидеоInvestigating & Responding to IncidentsВидеоIncident Detection,Investigation,and Automated Response- Practice AssessmentЗадание

Advanced Threat Protection and Security Optimization

Custom Detections RulesВидеоAlert Tuning & DeceptionВидеоData Loss Prevention (DLP) for protecting sensitive informationВидеоAligning security solutions with MCRA for specific scenariosВидеоBest Practices for Microsoft Defender XDRВидеоProactive Threat Detection & Incident Response with Microsoft Defender XDR- Graded AssessmentЗадание
Conclusion, What's Next, Job Roles, and Best PracticesЧтение
SOC Incident Response Using Microsoft Defender XDRDIALOGUE