Workbook-AzureSQLSecurity

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Content Index


Attribute Value
Type Workbook
Solution Azure SQL Database solution for sentinel
Source View on GitHub

Tables Used

This content item queries data from the following tables:

Table Selection Criteria Transformations Ingestion API Lake-Only
AzureActivity ActivityStatusValue == "Succeeded"
Caller has "@"
AzureDiagnostics 🔶 Category == "SQLSecurityAuditEvents"
ResourceType == "SERVERS/DATABASES"
Operation ? ?
SecurityAlert AlertType startswith "SQL."
AlertType startswith "SQl."
SecurityIncident

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Workbooks · Back to Azure SQL Database solution for sentinel