Threat Investigation with Defender XDR and Purview Audit โ€” LearnFlat

Threat Investigation with Defender XDR and Purview Audit

Learn to track, analyze, and investigate security threats using Defender XDR and Purview Standard audit logs to protect your organization's digital assets.

โฑ 1h 7m ๐Ÿ“š 12 lessons

About this course

When a security incident occurs, speed and accuracy in tracking an attacker's footprint are critical. Understanding how to navigate and analyze audit logs is the key to identifying compromised accounts, data exfiltration, and unauthorized system changes. This written course equips you with the foundational skills to perform threat investigations using Defender XDR and Purview Standard. You will learn how to systematically search audit records, reconstruct security events, and turn raw log data into actionable threat intelligence. What you'll learn: Understand foundational auditing concepts and how they support a modern zero-trust security posture; Configure and manage audit logging policies within Defender XDR and Purview; Search the Purview Universal Audit Log (UAL) to track suspicious user and administrator activities; Analyze log data to identify indicators of compromise (IoCs) and unauthorized access; Investigate email, document, and cloud-app threats using structured search queries; Practice interpreting audit records to reconstruct the timeline of a security incident. This course begins with essential security terminology and the fundamentals of auditing before guiding you through search strategies, log analysis techniques, and practical incident reconstruction scenarios. Designed for beginner security analysts, IT administrators, and compliance professionals, this course requires no prior experience with threat hunting. Start reading today to build your threat investigation skills and secure your organization's infrastructure.

What you'll get

  • ๐Ÿ“œ Certificate of completion
    Add it to your LinkedIn profile
  • ๐Ÿ’ฌ Personal AI tutor
    Stuck on a lesson? Ask your built-in tutor anything, any time.
  • โ™พ๏ธ Lifetime access
    Come back anytime, no expiry
  • ๐Ÿ“ฑ Phone or computer
    Works anywhere, any device
  • ๐Ÿ’ธ 14-day refund
    No questions asked
  • โšก Short & focused
    1h 7m of practical content

Reviews

No reviews yet โ€” be the first to share your experience.

Write a review

โ˜†โ˜†โ˜†โ˜†โ˜†
You'll be asked to sign in after sending โ€” your draft is saved.

Learners also took

Frequently asked

What do I need to take this course? +

Just a phone or computer with internet. No installs, no special hardware.

How do I pay? +

By card via Stripe. We donโ€™t store card details โ€” Stripe handles them securely.

Can I get a refund? +

Yes โ€” full refund within 14 days, no questions asked.

How long will I have access? +

Forever. Once you purchase, the course is yours to revisit anytime.

Will I get a certificate? +

Yes. On completion you'll receive a certificate you can add to your LinkedIn profile.

Built for learners in
Tech Design Finance Marketing Healthcare Education Hospitality Manufacturing