Blog Post

Microsoft Defender XDR Blog
4 MIN READ

Become a Microsoft Defender XDR Ninja

HeikeRitter's avatar
HeikeRitter
Icon for Microsoft rankMicrosoft
Oct 19, 2020

This Ninja blog covers the features and functions of Microsoft Defender XDR – everything that goes across the workloads, but not the individual workloads themselves. The content is structured into three different knowledge levels, with multiple modules: Fundamentals, Intermediate, and Expert.

 

Our unified security operations platform is combining the full power of Microsoft Sentinel with Microsoft Defender XDR into a single portal enhanced with more comprehensive features, AI, automation, guided experiences, and curated threat intelligence. This Ninja training also includes learning resources for the unified security operations platform. 

 

In addition, after each level, we offer you a knowledge check based on the training material you have just finished! Since there’s a lot of content, the goal of the knowledge checks is to help ensure understanding of the key concepts that were covered. Lastly, there’ll be a fun certificate issued at the end of the training: Disclaimer: This is not an official Microsoft certification and only acts as a way of recognizing your participation in this training content.

 

As the product keeps evolving, please check out our "Monthly Defender News" to keep up to date.

 

Table of Contents

Security Operations Fundamentals

Module 1. Technical overview

Module 2. Getting started

Module 3. Investigation – Incident

Module 4. Threat Intelligence

Module 5. Advanced hunting

Module 6. Automated investigation and response

Module 7. Automated attack disruption

Module 8. Community (blogs, webinars, GitHub)

Module 9. Partners

 

Security Operations Intermediate

Module 1. Architecture

Module 2. Investigation

Module 3. Advanced hunting

Module 4. Automated investigation and remediation

Module 5. Automated attack disruption

Module 6. Defender Experts for XDR

 

Security Operations Expert

Module 1. Incidents

Module 2. Advanced hunting

Module 3. APIs, custom reports, SIEM & other integrations

 

Security Operations Fundamentals

Module 1. Technical overview

Module 2. Getting started

Module 3. Investigation – Incident

Module 4. Threat Intelligence

Module 5. Advanced hunting

Module 6. Automated investigation and response

Module 7. Automated attack disruption

Module 8. Community (blogs, webinars, GitHub)

Module 9. Partner

 

> Ready for the Fundamentals Knowledge Check

 

Security Operations Intermediate

Module 1.  Architecture

Module 2. Investigation

Module 3. Advanced hunting

Module 4. Automated investigation and remediation

Module 5. Attack disruption

Module 6. Defender Experts for XDR

 

> Ready for the Intermediate Knowledge Check

 

Security Operations Expert

Module 1. Incidents

Module 2. Advanced hunting

Module 3. APIs, custom reports, SIEM & other integrations

 

> Ready for the Expert Knowledge Check

 

Once you’ve finished the training and the knowledge checks, please click here to request your certificate (you'll see it in your inbox within 3-5 business days.

Updated Dec 16, 2024
Version 39.0