Spycloud_MDE_LogsV2_CL

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

↑ Back to Tables Index


Attribute Value
Ingestion API Supported ✓ Yes

Contents

Schema (19 columns)

Source: KQL validation test schema

Column Name Type
AddedIOCsToDefender bool
BreachTitle string
DeviceId string
DocumentId string
ExposureLevel string
HostName string
IncidentId string
InfectedMachineId string
InfectedTime string
IsolationRequested bool
IsolationStatus bool
MachineTagAdded bool
MachineTagName string
NormalizedHostName string
OSPlatform string
PlaybookName string
RiskScore string
SpyCloudPublishDate datetime
TimeGenerated datetime

Schema References

Official Microsoft Learn documentation for field/column information:

Solutions (1)

This table is used by the following solutions:

Connectors (1)

This table is ingested by the following connectors:

Connector Selection Criteria
SpyCloud Enterprise Protection Connector


Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

↑ Back to Tables Index