Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊
| Attribute | Value |
|---|---|
| Ingestion API Supported | ✓ Yes |
Source: Connector definition
| Column Name | Type | Description |
|---|---|---|
| AlertId | string | Unique identifier of the unified alert. |
| AlertName | string | Human-readable alert name. |
| AnalystVerdict | string | Analyst verdict assigned to the alert. |
| Assets | dynamic | Assets associated with the alert. |
| AssigneeEmail | string | Email of the assignee. |
| AssigneeName | string | Full name of the assignee. |
| AttackSurfaces | dynamic | Attack surfaces associated with the alert. |
| Classification | string | Classification of the alert. |
| ConfidenceLevel | string | Confidence level of the detection. |
| CreatedAt | datetime | Time the alert was created. |
| DataSources | dynamic | Data sources associated with the alert. |
| DetectedAt | datetime | Time the alert was detected. |
| ExternalId | string | External identifier of the alert. |
| Product | string | Detection source product. |
| Severity | string | Severity of the alert. |
| Status | string | Current status of the alert. |
| StorylineId | string | Associated storyline identifier. |
| TimeGenerated | datetime | The timestamp (in UTC) when the log entry was generated. |
| UpdatedAt | datetime | Time the alert was last updated. |
| Vendor | string | Detection source vendor. |
Official Microsoft Learn documentation for field/column information:
This table is used by the following solutions:
This table is ingested by the following connectors:
| Connector | Selection Criteria |
|---|---|
| [DEPRECATED] SentinelOne (using Azure Function) |
In solution SentinelOne:
In solution SentinelOne:
In solution SentinelOne:
| Workbook | Selection Criteria |
|---|---|
| SentinelOne |
| Parser | Solution | Selection Criteria |
|---|---|---|
| SentinelOne | SentinelOne |
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊