ABNORMAL_CASES_CL

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Tables Index


Attribute Value
Ingestion API Supported ✓ Yes

Contents

Schema (18 columns)

Source: KQL validation test schema

Column Name Type
_ResourceId string
affectedEmployee string
analysis string
case_status string
caseId real
Computer string
description string
firstObserved datetime
ManagementGroupName string
MG string
RawData string
remediation_status string
severity string
SourceSystem string
TenantId string
threatIds string
TimeGenerated datetime
Type string

Solutions (1)

This table is used by the following solutions:

Connectors (1)

This table is ingested by the following connectors:

Connector Selection Criteria
AbnormalSecurity


Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Tables Index