: Found under the Configuration section, this menu is used to build Automation Rules that auto-assign, tag, or close incidents. Threat Management :
: The central hub for viewing and investigating security alerts grouped into incidents.
In Microsoft Sentinel, the navigation menu is the primary interface for managing security operations. It is organized into functional sections that allow users to ingest, detect, and respond to threats.
: A specialized Investigation menu provides a parallel timeline and entity mapping to understand how an attack unfolded. TEKLYNX SENTINEL Interface
: Access to the Workbooks menu allows security teams to create custom dashboards for monitoring SOC efficiency.