Building Cloud Siem With Sentinel

This skill covers deploying Microsoft Sentinel as a cloud-native SIEM and SOAR platform for centralized security operations. It details configuring data connectors for multi-cloud log ingestion, writing KQL detection queries, building automated response playbooks with Logic Apps, and leveraging the Sentinel data lake for petabyte-scale threat hunting across AWS, Azure, and GCP security telemetry.

theheavenlyd3mon 878c242 4 files · 32.2 KB Updated 28 repo stars

File contents

theheavenlyd3mon/hermes-profiles/tree/main/profiles/cyber-blue-soc/skills/Anthropic-Cybersecurity-Skills/skills/building-cloud-siem-with-sentinel commit 878c242bd2

Frequently asked questions

npx skillmds add theheavenlyd3mon/building-cloud-siem-with-sentinel