Prerequisite Enable UEBA – Use entity behavior analytics to detect advanced threats If already have UEBA enabled, you will notice that a new table called ‘IdentityInfo’ is now available under ‘Azure Sentinel UEBA’ group in your Log Analytics. The Identity info table contains a snapshot of the user’s profile: metadata information, groups membership, Azure AD … => Source
Related Posts
Azure Sentinel – Update Watchlist UI Enhancements
26 juillet 2021 / Sentinel
Azure Sentinel – Watchlist [General Availability]
26 juillet 2021 / Sentinel