Finding classic automation in Sentinel analytics

George Zerphey 131 Reputation points
2024-05-15T18:59:30.75+00:00

I have the ability to search through ARM templates for the Sentinel analytics and I'm hoping to find a way to detect the use of classic alert automation. Does anyone know what i should be searching for in the ARM template? We have not used this method, but apparently some of our clients have.

Any information would be helpful.

Thank you,

Microsoft Sentinel
Microsoft Sentinel
A scalable, cloud-native solution for security information event management and security orchestration automated response. Previously known as Azure Sentinel.
999 questions
{count} votes