1. Scenario
2. What is Microsoft Sentinel
3. Sentinel as SaaS
4. Sentinel Architecture
5. Deployment Prerequisites
6. Azure Log Analytics
7. Data Connectors
8. Content Hub
9. Typical Data Sources for a SIEM
10. CTI in Sentinel
11. Demo Create an Azure Subscription
12. Demo Create a Resource Group
13. Demo Create a Log Analytics Workspace
14. Demo Create a Sentinel Workspace
15. Sentinel RBAC
16. Demo Sentinel RBAC
17. Demo Sentinel Content Hub
18. Demo Ingesting a Threat Feed into Sentinel
19. Demo Verify Threat Feed log ingestion
20. Demo Ingest Entra ID
21. Demo Verify Entra ID Ingestion
22. Demo CTI in Sentinel
23. Demo ATT&CK in Sentinel
24. KQL 101
25. Demo KQL 101
26. Demo Threat Hunting in Sentinel
27. Demo Hunting for Entra ID Events
28. Analytic Rules
29. Scheduled Rules
30. Demo Scheduled Rules
31. NRT Rules
32. Demo NRT Rules
33. Threat Intelligence Rules
34. Demo Threat Intelligence Rules
35. Playbooks
36. Azure Logic Apps
37. Demo Playbooks with ChatGPT
38. Notebooks
39. Notebooks with MSTICPy