Summary and resources

Completed

You should have learned how Microsoft Sentinel provides a table to store indicator data accessible to Kusto Query Language (KQL) queries. And how the Threat intelligence page in Microsoft Sentinel provides the management options to maintain the indicators.

You should now be able to:

  • Manage threat indicators in Microsoft Sentinel
  • Use KQL to access threat indicators in Microsoft Sentinel

Learn more

You can learn more by reviewing the following.

Become a Microsoft Sentinel Ninja

Microsoft Tech Community Security Webinars