Masterclass: Configuring and Managing Microsoft Defender for Endpoint

During this 3-day course in 21 hours of super intensive training you will gain crucial cybersecurity knowledge and skills in terms of Configuring and Managing Microsoft Defender for Endpoint.

Moreover, you will be able to:

  • Get the highest quality and unique learning experience, the class is limited to 20 participants by default.
  • Get the opportunity to interact with our world-renowned Experts.
  • Go through CQURE’s custom lab exercises and practice them after the course.
  • Receive a lifelong certification after completing the course.

Why this course?

This is a 3-day deep dive course on configuring and managing Microsoft Defender for endpoint, a must-go for enterprise administrators, security officers and architects. It is delivered by one of the best people in the market in the security field and what is more, this is an international Live Virtual Class so you will be able to share the learning experience with a group of IT pros from around the world without leaving your home or office!

Audience

SOC analysts, Enterprise administrators, infrastructure architects, security professionals, systems engineers, network administrators, IT professionals, security consultants and other people responsible for implementing network and perimeter security. To attend this training, you should have a good hands-on experience in administering Windows infrastructure and basic around public cloud concept (Office 365, Azure).

This Live Virtual Class consists of 3 Modules in terms of Configuring and managing Microsoft Defender for endpoint. They include essential theory combined with individual practice during the exercises as well as loads of hands-on tools and real-case scenarios.

Module 1: Microsoft 365 Defender for Endpoint – EDR

  1. Intro 101 to Microsoft Defender ecosystem
  2. EDR deployment strategies
  3. EDR installation and configuration
  4. Fine tuning and hardening of EDR configuration
  5. Managing and Maintaining Security Posture
  6. Troubleshooting Common Issues
  7. Automation with ServiceNow and 3rd party

Module 2: Integration with Defender Family

  1. Microsoft 365 Defender Stack Overview
  2. Microsoft Defender for Identity
  3. Microsoft Defender for Cloud Apps
  4. Microsoft Defender for Cloud
  5. Microsoft Defender for Server
  6. EDR integration with Microsoft Azure Sentinel

Module 3: Security Operations with Microsoft EDR (Defender for Endpoints) Advanced Threat Hunting with Defender

  1. EDR integration with Microsoft Azure Sentinel
  2. Security Operations best practices with Microsoft EDR and Sentinel
  3. How to manage Incidents inside EDR and Sentinel
  4. Kusto language 101 – basic and advanced queries
  5. Advanced Hunting
  6. Hacker ways to hide malware and bypass EDR
  7. External Attack Surface Management and integration with Sentinel

After finishing the course, you will be granted a CQURE Certificate of Completion. Please note that after completing the course you will also be eligible for CPE points!

Practical information

Duration: 3 days
Format: Live virtual class with hands-on labs
Language: English
Delivery: Remote instructor-led training

FAQ

Hva koster kurset?
Prisen er 29 900 NOK for 3 dager. Kurset inkluderer kursmateriell, praktiske lab-øvelser og livslang sertifisering etter fullført kurs.

Hvor lenge varer kurset?
Kurset gjennomføres over 3 dager.

Hvordan gjennomføres kurset?
Kurset leveres som et live virtuelt kurs der deltakerne deltar i et virtuelt klasserom og arbeider med praktiske lab-øvelser underveis i undervisningen.

Hvem passer kurset for?
Kurset retter seg mot tekniske IT- og sikkerhetsfagfolk som arbeider med drift, implementering eller sikkerhet rundt Microsoft Defender-plattformen og endpoint-sikkerhet.

Hva lærer jeg i løpet av kurset?
Kurset fokuserer på implementering, konfigurasjon og administrasjon av Microsoft Defender for Endpoint, inkludert hvordan løsningen brukes til å overvåke, beskytte og analysere sikkerhetshendelser på endepunkter.

Er kurset praktisk rettet?
Ja. Kurset inkluderer praktiske øvelser i et virtuelt lab-miljø hvor deltakerne jobber med konfigurasjon og sikkerhetsanalyse relatert til Microsoft Defender for Endpoint.

Hvilke temaer dekkes i kurset?
Kurset dekker blant annet implementering, administrasjon og sikkerhetsanalyse med Microsoft Defender for Endpoint samt integrasjon med andre sikkerhetsverktøy i Microsoft-økosystemet.

Får jeg sertifisering etter kurset?
Ja. Etter fullført kurs mottar deltakerne et CQURE Certificate of Completion, som er livslang og ikke krever fornyelse.

Hvilke forkunnskaper anbefales?
Det anbefales erfaring med Windows-infrastruktur, Microsoft-sikkerhetsverktøy og generell IT-sikkerhet.

Hva gjør dette kurset unikt?
Kurset gir praktisk erfaring med Microsoft Defender for Endpoint gjennom intensive lab-øvelser og undervisning fra sikkerhetseksperter, kombinert med tilgang til kursmateriell og laboratorier også etter kurset.