Prancer PenSuite AI

Solution: Prancer PensuiteAI Integration

Prancer PensuiteAI Integration Logo

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Solutions Index


Attribute Value
Publisher Prancer PenSuiteAI Integration
Support Tier Partner
Support Link https://www.prancer.io
Categories Security - Threat Protection,DevOps
Version 3.0.0
Author Prancer
First Published 2023-08-02
Solution Folder Prancer PenSuiteAI Integration
Marketplace Azure Marketplace · Popularity: ⚪ Very Low (0%)

The Prancer solution for Microsoft Sentinel enables you to ingest data from the Prancer portal for PAC and CSPM scans. Refer to Prancer Documentation Site for more information.

Underlying Microsoft Technologies used:

This solution is dependent on the following technologies, and some of these dependencies either may be in Preview state or might result in additional ingestion or operational costs:

a. Azure Monitor HTTP Data Collector API

b. Azure Functions

Contents

Data Connectors

This solution provides 1 data connector(s):

🔶 CLv1: This connector ingests into a table that uses the legacy Custom Log V1 schema format with type-suffixed column names (e.g. _s, _d, _b, _t, _g). Note: identification is based on column name suffixes which are also permitted in CLv2, so this classification may not always be accurate.

Tables Used

This solution uses 1 table(s):

Table Used By Connectors Used By Content
prancer_CL 🔶 Prancer Data Connector Analytics, Hunting, Workbooks

🔶 CLv1: This table uses the legacy Custom Log V1 schema format with type-suffixed column names (e.g. _s, _d, _b, _t, _g). Note: identification is based on column name suffixes which are also permitted in CLv2, so this classification may not always be accurate.

Content Items

This solution includes 14 content item(s):

Content Type Count
Analytic Rules 11
Hunting Queries 2
Workbooks 1

Analytic Rules

Name Severity Tactics Tables Used
Disks Alerts From Prancer High Reconnaissance prancer_CL
Flow Logs Alerts for Prancer High Reconnaissance prancer_CL
NetworkSecurityGroups Alert From Prancer High Reconnaissance prancer_CL
PAC high severity High Reconnaissance prancer_CL
Registries Alerts for Prancer High Reconnaissance prancer_CL
Sites Alerts for Prancer High Reconnaissance prancer_CL
Storage Accounts Alerts From Prancer High Reconnaissance prancer_CL
Subnets Alerts for Prancer High Reconnaissance prancer_CL
Vaults Alerts for Prancer High Reconnaissance prancer_CL
Virtual Machines Alerts for Prancer High Reconnaissance prancer_CL
VirtualNetworkPeerings Alerts From Prancer High Reconnaissance prancer_CL

Hunting Queries

Name Tactics Tables Used
Hunting Query for Failed CSPM Scan Items Collection prancer_CL
Hunting Query for High Severity PAC findings Collection prancer_CL

Workbooks

Name Tables Used
PrancerSentinelAnalytics prancer_CL

Release Notes

Version Date Modified (DD-MM-YYYY) Change History
3.0.1 19-03-2024 Updated Workbook, Analytic Rules and Hunting Queries
3.0.0 20-09-2023 Initial Solution Release

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Solutions Index