Introduction: Gearing up for the SC-200 exam? Microsoft's SC-200 exam, also known as the Security Operations Analyst certification, is designed to validate your skills in managing security alerts, responding to…
Microsoft SC-200 Security Operations Analyst – Study Notes
Defender for Identity entity tags in Microsoft 365 Defender https://docs.microsoft.com/en-us/defender-for-identity/manage-sensitive-honeytoken-accounts Using role-based access control (RBAC) https://docs.microsoft.com/en-us/learn/modules/deploy-microsoft-defender-for-endpoints-environment/4-manage-access Manage portal access using role-based access control https://docs.microsoft.com/en-us/microsoft-365/security/defender-endpoint/rbac?view=o365-worldwide Safe Attachments policies in Microsoft Defender…
Microsoft Azure Security – Study Notes
A collection of all my study notes and lab work while working towards passing the badge Microsoft Certified Security Engineer Associate by passing the AZ-500 exam These notes are in…
Office 365 Security and Compliance – Alert When A Specific File Is Accessed
When a very important file stored in OneDrive needs to be monitored. This is how to create an alert on file activity. We specifically want to monitor and alert on…
Content Search – Security And Compliance – Search A Mailbox For Specific Content And Then Export Results
If you’re doing some compliance investigation work, you may need to search a user’s mailbox for specific words. This is how To Search Email Content in Office 365 Security &…
Azure – Log Analytics Workspace and AzureVirtual Machine Agent Install
How to prepare to collect security log data from your Azure Windows virtual machines. You require two things: Log Analystics Workspace to be created The agent to be installed on…
Azure – Update Management
How to maintain the patch status of your Windows and Linux machines "You can use Update Management in Azure Automation to manage operating system updates for your Windows and Linux…
Azure – Activity Log
Example of what you can see in an Azure Activity Log Event Initiated by Subscription Operation Status Time
AZ-103: Microsoft Azure Administrator – EXAM PASSED!!!
Jan 16, 2020 AZ-103: Microsoft Azure ADMINISTRATOR EXAM PASSED!!! #Azure #Administrator #CertifiedProfessional #MicrosoftAzure #MicrosoftCloud #Microsoft #alwaysbelearning #AZ103 #EXAM #PASSED