SOCRadar Incident Correlation

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Content Index


Correlate SOCRadar alarms with Microsoft Sentinel incidents to track import status and identify gaps.

Attribute Value
Type Hunting Query
Solution SOCRadar
ID 3a665ce4-b824-4a79-861b-c9f80ab4daba
Severity Medium
Tactics Discovery
Techniques T1526
Source View on GitHub

Tables Used

This content item queries data from the following tables:

Table Transformations Ingestion API Lake-Only
SecurityIncident ?

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Hunting Queries · Back to SOCRadar