
Episode 6 of 10
For the full video series, click here: https://aka.ms/SC-200onYouTube
This video teaches learners how to write effective Kusto Query Language (KQL) statements to analyze log data in Microsoft Sentinel, building the core analytical skills required for threat detection, investigation, and reporting. It covers the structure of KQL queries, techniques for summarizing and visualizing data, methods for analyzing and correlating results across multiple tables, and approaches for manipulating string data from diverse log sources. Through four focused modules, learners progress from foundational query construction to more advanced multi‑table and data‑shaping techniques, gaining practical experience with the operators and patterns most commonly used in security analytics. This path supports the responsibilities of a Security Operations Analyst and aligns with the analytical competencies measured in the SC‑200 certification.
Learn more about this course and take the certification exam to test your new skills: https://aka.ms/SC-200onLearn











