BigHugger
sk Skill · vinayaklatthe

sentinel-detection-engineering

Guidance for detection engineering in Microsoft Sentinel — building, testing, deploying, and maintaining analytics rules, hunting queries, and SOAR automation. Covers the Content Hub solution model, MITRE ATT&CK mapping, scheduled vs near-real-time (NRT) vs Fusion vs anomalies analytics, KQL detection patterns (joins, summarize, bin, materialize), entity mapping and incident enrichment, custom detections from…

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
JavaScript
Host repository
vinayaklatthe/microsoft-security-skills
Version
0.1.0
Licence
MIT
Host stars
174
Host language
JavaScript