Analyze query results using KQL

Analyze query results using KQL

Learn how to summarize and visualize data with a KQL statement provides the foundation to build detections in Microsoft Sentinel.

Security Operations Analyst
Azure
Sentinel

Module Objectives

Upon completion of this module, the learner will be able to:

  • Summarize data using KQL statements
  • Render visualizations using KQL statements

Prerequisites

  • Familiarity with security operations in an organization.
  • Basic experience with Azure services.