Microsoft Sentinel
A scalable, cloud-native solution for security information event management and security orchestration automated response. Previously known as Azure Sentinel.
1,261 questions
This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
I would like to have an example of a rule on Sentinel that uses log sources from GCP Audit Log.
You could take a look at the Sigma examples here https://github.com/SigmaHQ/sigma/tree/master/rules/cloud/gcp and use a tool like uncoder.ai to translate into a Microsoft Sentinel rule.
I hope this helps, please accept if it does?