SC-200: Mitigate threats using Microsoft Defender XDR

Intermediate
Security Operations Analyst
Microsoft Defender for Cloud Apps
Microsoft Defender for Identity
Microsoft Defender for Office 365
Microsoft 365
Microsoft Defender for Endpoint
Microsoft Defender
Microsoft Defender XDR

Analyze threat data across domains and rapidly remediate threats with built-in orchestration and automation in Microsoft Defender XDR. This learning path aligns with exam SC-200: Microsoft Security Operations Analyst.

Prerequisites

  • Fundamental understanding of Microsoft security, compliance, and identity products
  • Basic understanding of Microsoft Defender XDR

Modules in this learning path

In this module, you'll learn how to use the Microsoft Defender XDR integrated threat protection suite.

Learn how the Microsoft 365 Defender portal provides a unified view of incidents from the Microsoft 365 Defender family of products.

Use the advanced detection and remediation of identity-based threats to protect your Microsoft Entra identities and applications from compromise.

Learn about the Microsoft Defender for Office 365 component of Microsoft Defender XDR.

Learn about the Microsoft Defender for Identity component of Microsoft Defender XDR.

Microsoft Defender for Cloud Apps is a cloud access security broker (CASB) that operates on multiple clouds. It provides rich visibility, control over data travel, and sophisticated analytics to identify and combat cyberthreats across all your cloud services. Learn how to use Defender for Cloud Apps in your organization.

Get acquainted with Microsoft Copilot for Security. You are introduced to some basic terminology, how Microsoft Copilot for Security processes prompts, the elements of an effective prompt, and how to enable the solution.

Microsoft Copilot for Security has a rich set of features. Learn about available plugins, promptbooks, the ways you can export and share information from Copilot, and much more.

Microsoft Copilot for Security is accessible directly from some Microsoft security products, this is referred to as the embedded experience. Learn about the scenarios supported by the Copilot embedded experience in Microsoft’s security solutions.