Solution: Prancer PensuiteAI Integration
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊
| Attribute | Value |
|---|---|
| Publisher | Prancer PenSuiteAI Integration |
| Support Tier | Partner |
| Support Link | https://www.prancer.io |
| Categories | Security - Threat Protection,DevOps |
| Version | 3.0.0 |
| Author | Prancer |
| First Published | 2023-08-02 |
| Solution Folder | Prancer PenSuiteAI Integration |
| Marketplace | Azure Marketplace · Popularity: ⚪ Very Low (0%) |
The Prancer solution for Microsoft Sentinel enables you to ingest data from the Prancer portal for PAC and CSPM scans. Refer to Prancer Documentation Site for more information.
Underlying Microsoft Technologies used:
This solution is dependent on the following technologies, and some of these dependencies either may be in Preview state or might result in additional ingestion or operational costs:
a. Azure Monitor HTTP Data Collector API
This solution provides 1 data connector(s):
🔶 CLv1: This connector ingests into a table that uses the legacy Custom Log V1 schema format with type-suffixed column names (e.g.
_s,_d,_b,_t,_g). Note: identification is based on column name suffixes which are also permitted in CLv2, so this classification may not always be accurate.
This solution uses 1 table(s):
| Table | Used By Connectors | Used By Content |
|---|---|---|
prancer_CL 🔶 |
Prancer Data Connector | Analytics, Hunting, Workbooks |
🔶 CLv1: This table uses the legacy Custom Log V1 schema format with type-suffixed column names (e.g.
_s,_d,_b,_t,_g). Note: identification is based on column name suffixes which are also permitted in CLv2, so this classification may not always be accurate.
This solution includes 14 content item(s):
| Content Type | Count |
|---|---|
| Analytic Rules | 11 |
| Hunting Queries | 2 |
| Workbooks | 1 |
| Name | Severity | Tactics | Tables Used |
|---|---|---|---|
| Disks Alerts From Prancer | High | Reconnaissance | prancer_CL |
| Flow Logs Alerts for Prancer | High | Reconnaissance | prancer_CL |
| NetworkSecurityGroups Alert From Prancer | High | Reconnaissance | prancer_CL |
| PAC high severity | High | Reconnaissance | prancer_CL |
| Registries Alerts for Prancer | High | Reconnaissance | prancer_CL |
| Sites Alerts for Prancer | High | Reconnaissance | prancer_CL |
| Storage Accounts Alerts From Prancer | High | Reconnaissance | prancer_CL |
| Subnets Alerts for Prancer | High | Reconnaissance | prancer_CL |
| Vaults Alerts for Prancer | High | Reconnaissance | prancer_CL |
| Virtual Machines Alerts for Prancer | High | Reconnaissance | prancer_CL |
| VirtualNetworkPeerings Alerts From Prancer | High | Reconnaissance | prancer_CL |
| Name | Tactics | Tables Used |
|---|---|---|
| Hunting Query for Failed CSPM Scan Items | Collection | prancer_CL |
| Hunting Query for High Severity PAC findings | Collection | prancer_CL |
| Name | Tables Used |
|---|---|
| PrancerSentinelAnalytics | prancer_CL |
| Version | Date Modified (DD-MM-YYYY) | Change History |
|---|---|---|
| 3.0.1 | 19-03-2024 | Updated Workbook, Analytic Rules and Hunting Queries |
| 3.0.0 | 20-09-2023 | Initial Solution Release |
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊