• AAD " SigninLogs 6/7/2023, 1:19:46 PM AADServicePrincipalRiskEvents –"

    AuditLogs 6/7/2023, 1:03:11 PM

    AADNonInteractiveUserSignInLogs 6/7/2023, 1:19:59 PM

    AADServicePrincipalSignInLogs 6/7/2023, 1:19:59 PM

    AADManagedIdentitySignInLogs 6/7/2023, 1:16:18 PM

    AADProvisioningLogs 6/7/2023, 12:12:12 PM

    ADFSSignInLogs

    AADUserRiskEvents 6/5/2023, 12:03:22 AM

    AADRiskyUsers 6/5/2023, 12:08:22 AM

    NetworkAccessTraffic

    AADRiskyServicePrincipals

  • Azure Activity “AzureActivity 6/7/2023, 1:32:55 PM”

  • Azure Key Vault “AzureActivity 6/7/2023, 1:32:55 PM”

  • Azure SQL Databases " SQLSecurityAuditEvents 6/7/2023, 1:31:57 PM DevOpsOperationsAudit –"

    SQLInsights

    AutomaticTuning

    QueryStoreWaitStatistics

    Errors

    DatabaseWaitStatistics

    Timeouts

    Blocks

    Deadlocks

    Basic

    InstanceAndAppAdvanced

    WorkloadManagement

  • Darktrace Connector for Microsoft Sentinel REST API “darktrace_model_alerts_CL 6/7/2023, 1:39:03 PM”

  • M365 Defender " SecurityIncident 6/7/2023, 6:54:14 AM AlertEvidence 6/7/2023, 9:35:25 AM"

    SecurityAlert 6/7/2023, 9:47:23 AM

    DeviceEvents 6/7/2023, 1:38:33 PM

    DeviceFileEvents 6/7/2023, 1:38:26 PM

    DeviceImageLoadEvents 6/7/2023, 1:38:41 PM

    DeviceInfo 6/7/2023, 1:35:32 PM

    DeviceLogonEvents 6/7/2023, 1:35:13 PM

    DeviceNetworkEvents 6/7/2023, 1:38:56 PM

    DeviceNetworkInfo 6/7/2023, 1:35:32 PM

    DeviceProcessEvents 6/7/2023, 1:38:42 PM

    DeviceRegistryEvents 6/7/2023, 1:38:16 PM

    DeviceFileCertificateInfo 6/7/2023, 1:38:29 PM

    EmailEvents 6/7/2023, 1:38:09 PM

    EmailUrlInfo 6/7/2023, 1:39:10 PM

    EmailAttachmentInfo 6/7/2023, 1:38:06 PM

    EmailPostDeliveryEvents 6/7/2023, 1:06:37 AM

    UrlClickEvents 6/7/2023, 1:39:26 PM

    IdentityLogonEvents 6/7/2023, 1:38:15 PM

    IdentityQueryEvents 6/7/2023, 1:36:56 PM

    IdentityDirectoryEvents 6/7/2023, 1:34:32 PM

    CloudAppEvents 6/7/2023, 1:36:50 PM

    AlertInfo 6/7/2023, 6:53:43 AM

    • Microsoft Defender for Endpoint “SecurityAlert (MDATP) 6/7/2023, 7:04:51 AM”
    • Microsoft Defender for Identity “SecurityAlert (AATP) 6/7/2023, 9:47:23 AM”
    • Microsoft Defender for O365 (Preview) “SecurityAlert (OATP) 6/5/2023, 8:17:12 PM”
    • Microsoft Defender for Cloud Apps " SecurityAlert (MCAS) 6/7/2023, 6:59:46 AM McasShadowItReporting –"
    • AAD Identity Protection “SecurityAlert (IPC)”
    • Microsoft Defender Alerts
    • Microsoft Defender Vulnerability Management
    • Microsoft Purview DLP
  • Microsoft Defender for Cloud “SecurityAlert (ASC) –”

  • Microsoft Defender Threat Intelligence (Preview) “SecurityAlert (OATP) 6/5/2023, 8:17:12 PM”

  • Office 365 " OfficeActivity (SharePoint) 6/7/2023, 1:37:35 PM OfficeActivity (Teams) 6/7/2023, 1:38:24 PM"

    OfficeActivity (Exchange) 6/7/2023, 1:37:19 PM

  • Windows Firewall " WindowsFirewall –"