TrendAI Vision One™ for Microsoft Sentinel

Solution: Trend Micro Vision One

Trend Micro Vision One Logo

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Solutions Index


Attribute Value
Publisher Trend Micro
Support Tier Partner
Support Link https://success.trendmicro.com/dcx/s/?language=en_US
Categories domains
Version 3.0.0
Author Trend Micro
First Published 2022-05-11
Last Updated 2026-03-20
Solution Folder Trend Micro Vision One
Marketplace Azure Marketplace · Popularity: 🔵 Medium (55%)

The Trend Vision One solution for Microsoft Sentinel enables you to ingest security alerts and detection data reported in the Trend Vision One platform into Microsoft Sentinel.

Underlying Microsoft Technologies used:

This solution takes a dependency on the following technologies, and some of these dependencies either may be in Preview state or might result in additional ingestion or operational costs:

a. Azure Monitor HTTP Data Collector API

Contents

Data Connectors

This solution provides 1 data connector(s):

🔶 CLv1: This connector ingests into a table that uses the legacy Custom Log V1 schema format with type-suffixed column names (e.g. _s, _d, _b, _t, _g). Note: identification is based on column name suffixes which are also permitted in CLv2, so this classification may not always be accurate.

Tables Used

This solution uses 4 table(s):

Table Used By Connectors Used By Content
TrendMicro_XDR_OAT_CL 🔶 Trend Vision One -
TrendMicro_XDR_RCA_Result_CL 🔶 Trend Vision One -
TrendMicro_XDR_RCA_Task_CL 🔶 Trend Vision One -
TrendMicro_XDR_WORKBENCH_CL 🔶 Trend Vision One Analytics, Workbooks

🔶 CLv1: This table uses the legacy Custom Log V1 schema format with type-suffixed column names (e.g. _s, _d, _b, _t, _g). Note: identification is based on column name suffixes which are also permitted in CLv2, so this classification may not always be accurate.

Content Items

This solution includes 2 content item(s):

Content Type Count
Analytic Rules 1
Workbooks 1

Analytic Rules

Name Severity Tactics Tables Used
Create Incident for XDR Alerts High - TrendMicro_XDR_WORKBENCH_CL

Workbooks

Name Tables Used
TrendMicroXDROverview TrendMicro_XDR_WORKBENCH_CL

Release Notes

Version Date Modified (DD-MM-YYYY) Change History
3.0.1 30-01-2025 Updated hyperlink in Data Connector

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Solutions Index