What you’ll take away.
- Consolidate security data
- Plan detection rules
- Triage alerts and investigate incidents
Your training in detail
- Who is it for?
- SOC and incident response teams
- Prerequisites
- Azure, Microsoft 365 and security fundamentals
- Format & planning
- Suggested format: 3–5 training days, optionally split into sessions. Scope depends on prior experience.
Agenda: from understanding to application
Our independently developed agenda proposal. Focus areas, lab environment and scope are agreed before booking.
Consolidate security data
Plan detection rules
Triage alerts and investigate incidents
Analyze evidence with KQL
Prepare and document responses
Original exercise proposal: create a solution for a fictional company focused on consolidate security data, document decisions and review them against agreed criteria.
Exams, licences & credentials
Preparation referencing SC-200. External exam, exam fees, licences and lab access are included only when explicitly confirmed in the offer. Attendance does not grant Microsoft certification; verify additional credential prerequisites and current exam requirements before booking.
Vendor references & review date
Sources checked on 2026-09-23. These sources describe the technology or external exam requirements. They do not imply a partnership with NextNowa.
Your learning content
These objectives describe the training topic. The specific syllabus, duration, dates, trainer and price are agreed before booking.
