Unified SecOps Playbook: End-to-end enterprise security with Microsoft Sentinel, Defender XDR, and Security Copilot
暫譯: 統一安全運營手冊:使用 Microsoft Sentinel、Defender XDR 和 Security Copilot 的端到端企業安全
Lazaro, Jose, Burnap, Marcus, Trent, Rod
- 出版商: Packt Publishing
- 出版日期: 2025-12-31
- 售價: $1,840
- 貴賓價: 9.5 折 $1,748
- 語言: 英文
- 頁數: 524
- 裝訂: Quality Paper - also called trade paper
- ISBN: 1837632863
- ISBN-13: 9781837632862
-
相關分類:
kali-linux
海外代購書籍(需單獨結帳)
相關主題
商品描述
A practical guide to modern cybersecurity using Microsoft tools, covering step-by-step setup, Zero Trust AI integration, and security framework alignment
Free with your book: DRM-free PDF version + access to Packt's next-gen Reader*
Key Features:
- Deploy Microsoft Sentinel with end-to-end guidance, including CI/CD automation and scalable architecture
- Integrate Security Copilot with Defender XDR to enable AI-driven threat detection and response
- Implement Zero-Trust strategies and align with modern DevSecOps and cybersecurity frameworks
- Purchase of the print or Kindle book includes a free PDF eBook
Book Description:
In the evolving cybersecurity landscape, the integration of Microsoft Defender XDR and Security Copilot presents a game-changing approach to modern threat detection and response. With this book, you'll understand how these tools, in conjunction with Microsoft's extensive ecosystem, enable organizations to outpace emerging threats.
Starting with core XDR concepts, security frameworks, and Microsoft's competitive advantages in cybersecurity, you'll master the foundational aspects of deploying Microsoft Sentinel, configuring security infrastructure, and optimizing security operations using AI-driven tools. Advanced topics, including Zero-Trust strategies, DevSecOps integration, and partner programs, prepare you for increasingly sophisticated scenarios in Microsoft cloud security. You'll also explore practical deployment workflows, covering cost analysis, role-based access configurations, and fast-tracked Sentinel deployment using CI/CD pipelines.
By the end of this book, you'll have gained insights into security automation, threat detection, and AI integration with Security Copilot for optimized operations and have the confidence to implement and manage Microsoft Defender XDR and Sentinel in complex environments, driving scalable and secure solutions.
*Email sign-up and proof of purchase required
What You Will Learn:
- Deploy Microsoft Sentinel with RBAC, governance, and financial planning
- Align security programs with Zero Trust and global frameworks
- Automate assessments with ScubaGear, Maester, and Azure DevOps
- Build secure Sentinel foundations with Entra ID, PIM, and management groups
- Onboard customers and partners via Azure Lighthouse and GDAP
- Master the Sentinel workflow backbone: KQL, detections, automation, MITRE ATT&CK
- Accelerate rollouts using FastTrack deployment and CI/CD pipelines
- Harness Security Copilot for AI-assisted detection and investigation
Who this book is for:
This book is for you if you have a solid understanding of Microsoft security products and Azure and are now looking to expand your expertise by incorporating Microsoft Sentinel. Security experts using alternative SIEM tools who want to adopt Microsoft Sentinel as an additional or replacement service will also find this book useful.
Table of Contents
- Microsoft Defender XDR in the Age of Security Copilot
- Aligning with Cybersecurity Frameworks
- Microsoft Security for Partners
- Core Foundations: Initial Setup, Strategic Financial Planning, and Business Insights
- Getting Ready for Action: Assess Your Microsoft 365 Tenant
- Foundational Architecture and Secure Access for Sentinel Deployments for MSSPs
- Customer Onboarding: The Power of Azure Lighthouse
- Joining the Dots: Microsoft Sentinel Deployment Plan and Features
- Microsoft Sentinel Fast-Track Deployment Options and CI/CD Pipelines
- Activate, Configure, Deploy: Your First Steps with Security Copilot
商品描述(中文翻譯)
**現代網路安全的實用指南,使用 Microsoft 工具,涵蓋逐步設置、Zero Trust AI 整合及安全框架對齊**
**購買本書可獲得:無 DRM 的 PDF 版本 + Packt 下一代閱讀器的訪問權限**
**主要特點:**
- 提供 Microsoft Sentinel 的端到端部署指導,包括 CI/CD 自動化和可擴展架構
- 將 Security Copilot 與 Defender XDR 整合,以啟用 AI 驅動的威脅檢測和響應
- 實施 Zero-Trust 策略,並與現代 DevSecOps 和網路安全框架對齊
- 購買印刷版或 Kindle 版書籍可獲得免費 PDF 電子書
**書籍描述:**
在不斷演變的網路安全環境中,Microsoft Defender XDR 和 Security Copilot 的整合提供了一種顛覆性的現代威脅檢測和響應方法。通過本書,您將了解這些工具如何與 Microsoft 廣泛的生態系統結合,使組織能夠超越新興威脅。
從核心 XDR 概念、安全框架以及 Microsoft 在網路安全方面的競爭優勢開始,您將掌握部署 Microsoft Sentinel、配置安全基礎設施和使用 AI 驅動工具優化安全操作的基礎知識。進階主題包括 Zero-Trust 策略、DevSecOps 整合和夥伴計劃,為您準備在 Microsoft 雲安全中面對日益複雜的情境。您還將探索實用的部署工作流程,涵蓋成本分析、基於角色的訪問配置,以及使用 CI/CD 管道快速部署 Sentinel。
在本書結束時,您將獲得有關安全自動化、威脅檢測和與 Security Copilot 整合的 AI 的見解,以優化操作,並有信心在複雜環境中實施和管理 Microsoft Defender XDR 和 Sentinel,推動可擴展和安全的解決方案。
*需要電子郵件註冊和購買證明*
**您將學到的內容:**
- 使用 RBAC、治理和財務規劃部署 Microsoft Sentinel
- 將安全計劃與 Zero Trust 和全球框架對齊
- 使用 ScubaGear、Maester 和 Azure DevOps 自動化評估
- 使用 Entra ID、PIM 和管理群組建立安全的 Sentinel 基礎
- 通過 Azure Lighthouse 和 GDAP 進行客戶和夥伴的上線
- 精通 Sentinel 工作流程的骨幹:KQL、檢測、自動化、MITRE ATT&CK
- 使用 FastTrack 部署和 CI/CD 管道加速推出
- 利用 Security Copilot 進行 AI 輔助的檢測和調查
**本書適合誰:**
如果您對 Microsoft 安全產品和 Azure 有扎實的理解,並希望通過整合 Microsoft Sentinel 擴展您的專業知識,那麼本書適合您。使用其他 SIEM 工具的安全專家,想要將 Microsoft Sentinel 作為額外或替代服務的人士,也會發現本書有用。
**目錄**
- Microsoft Defender XDR 在 Security Copilot 時代
- 與網路安全框架對齊
- Microsoft 夥伴的安全性
- 核心基礎:初始設置、戰略財務規劃和商業洞察
- 準備行動:評估您的 Microsoft 365 租戶
- MSSP 的 Sentinel 部署的基礎架構和安全訪問
- 客戶上線:Azure Lighthouse 的力量
- 連接點:Microsoft Sentinel 部署計劃和功能
- Microsoft Sentinel 快速部署選項和 CI/CD 管道
- 啟動、配置、部署:您與 Security Copilot 的第一步