My recent curious topic for learning is Microsoft Office365, specifically in Defender XDR/Endpoint and Sentinel which is a standard setup in many enterprises in-house SOC.
This is quite interesting subject to learn, which involves the enterprise platform for managing the security posture using endpoint solution through Microsoft Defender for Endpoint, Defender XDR (for Cloud) and integrating SIEM solution through Sentinel (+Azure Logic Apps for SOAR solution).
The Microsoft Security services defending across attack chains. It follows the MITR ATT&CK Framework.
Here are some of the useful reading resources to refer.