🎄 Advent of Cyber 2025 – SOC Alert Triaging: Tinsel Triage
The SOC at The Best Festival Company is overwhelmed — alerts are flooding in like a digital blizzard, and all signs point to suspicious activity across the cloud environment. Whispers of the Easter Bunnies return, leaving the elves scrambling to identify what’s real and what’s noise. ⚠️🐰
In today’s walkthrough, we step into the SOC to perform alert triage using Microsoft Sentinel, identifying true threats hidden within the chaos.
🧠 You’ll Learn:
📌 Why alert triage and prioritisation are essential
📌 How to investigate alerts inside Microsoft Sentinel
📌 How to correlate logs to confirm real activity and determine alert verdicts
Let’s bring order back to the SOC and uncover what the bunnies are really up to. 🔍🛡️
Room Link: https://tryhackme.com/room/azuresenti...
🔥 More AoC 2025 walkthroughs coming soon — stay tuned!