Loading...
Please wait a moment
Founded by passionate advocates of learning and innovation, Learni set out to make professional training accessible to everyone, everywhere in the world. Our team works in the largest cities such as Paris, Lyon, Marseille, and internationally, to support talents and organizations in their skills development.
Which format do you prefer?
30 free minutes with a training advisor — no commitment.
Loading available slots...
Artificial Intelligence training in San Francisco in October 2026 with Learni. Certified, expert trainers, eligible for employer funding. Free quote.
Professional Training training in Memphis in October 2026 with Learni. Certified, expert trainers, eligible for employer funding. Free quote.
Cybersecurity training in Oklahoma City in December 2026 with Learni. Certified, expert trainers, eligible for employer funding. Free quote.
Professional Training training in Tucson in December 2026 with Learni. Certified, expert trainers, eligible for employer funding. Free quote.
The Training Azure Sentinel - Detecting and Responding to Cyber Threats training is delivered in-person or remotely (blended-learning, e-learning, virtual classroom, remote in-person). At Learni, a Qualiopi-certified training organization, each program is designed to maximize skills acquisition, regardless of the training mode chosen.
The trainer alternates between demonstrative, interrogative, and active methods (through practical exercises and/or real-world scenarios). This pedagogical approach ensures concrete and directly applicable learning in the workplace.
To ensure the quality of the Training Azure Sentinel - Detecting and Responding to Cyber Threats training, Learni provides the following teaching resources:
For in-house training at a location external to Learni, the client ensures and commits to having all necessary teaching materials (IT equipment, internet connection...) for the proper conduct of the training action in accordance with the prerequisites indicated in the communicated training program.
The assessment of skills acquired during the Training Azure Sentinel - Detecting and Responding to Cyber Threats training is carried out through:
Learni is committed to the accessibility of its professional training programs. All our training programs are accessible to people with disabilities. Our teams are available to adapt teaching methods to your specific needs. Do not hesitate to contact us for any accommodation request.
Learni training programs are available for inter-company and intra-company settings, both in-person and remote. Registration is possible up to 48 business hours before the start of training. Our programs are eligible for OPCO, Pôle emploi, and FNE-Formation funding. Contact us to discuss your training project and funding possibilities.
Installation and setup of a dedicated Log Analytics workspace for Azure Sentinel, connection of multiple data sources such as Azure AD, Office 365, and Windows endpoints, configuration of SIEM connectors for optimized log ingestion, practical exercises on a simulated enterprise environment, creation of initial basic rules and real-time data flow verification to validate security coverage.
Writing advanced KQL queries to analyze logs and detect anomalies, developing custom analytics rules based on real persistent threat cases, using machine learning for UEBA and identifying malicious entities, practical workshops on simulated attack scenarios such as ransomware or data exfiltration, production of alert reports and tuning thresholds to minimize false positives.
Conducting in-depth investigations via the Incidents and Bookmarks module, triaging merged alerts and event timelines, implementing Logic Apps playbooks to automate responses such as IP blocking or host isolation, integration with Microsoft Defender for complete SOAR orchestration, exercises on concrete zero-day incident cases, creation of deliverables like emergency procedures and response documentation.
Designing custom dashboards with Sentinel Workbooks for real-time SOC visualization, optimizing costs and performance via sampling and retention policies, advanced integration with third-party tools like Splunk or ServiceNow via API, workshops on data export and GDPR compliance, final ongoing project with complete solution deployment, code review and maintenance plan for sustainable professional adoption.
Target audience
SOC Engineers, cybersecurity analysts, and Azure administrators for professional skill development
Prerequisites
Solid knowledge of Azure AD, KQL, and security log management
Loading...
Please wait a moment





























