This demo showcases how Microsoft Sentinel’s graph-powered investigation accelerates threat hunting and incident response. Security analysts use KQL queries to detect suspicious process executions and credential dumping, then map user and device relationships to uncover lateral movement risks.
Last updated 2026-07-20
Duration
10 minutes
Recommended Role
Industry
Licensing
Windows E3, Windows E5
Audience
Products
Solution Area
Security
Solution Play
Demo type
Simulated Experience
No available notes
No available assets
No applicable resources