You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
@@ -65,7 +65,7 @@ To create a Sentinel case or incident using Security Center alerts, you'll need
65
65
66
66
For more information about Azure Sentinel, see [the documentation](https://docs.microsoft.com/azure/sentinel/).
67
67
68
-
[!INCLUDE [Sentinel and workspace schema](../../includes/security-center-alerts-schema-loganalyticsworkspace.md)]
68
+
[!INCLUDE [Sentinel and workspace schema](../../includes/security-center-alerts-schema-log-analytics-workspace.md)]
69
69
70
70
71
71
@@ -76,7 +76,7 @@ Azure Security Center audits generated Security alerts as events in Azure Activi
76
76
77
77
You can view the security alerts events in Activity Log by searching for the Activate Alert event as shown:
78
78
79
-
[](media/alerts-schemas/SampleActivityLogAlert.png#lightbox)
79
+
[](media/alerts-schemas/sample-activity-log-alert.png#lightbox)
80
80
81
81
82
82
### Sample JSON for alerts sent to Azure Activity Log
@@ -177,4 +177,17 @@ Microsoft Graph is the gateway to data and intelligence in Microsoft 365. It pro
177
177
178
178
The schema and a JSON representation for security alerts sent to MS Graph, are available in [the Microsoft Graph documentation](https://docs.microsoft.com/graph/api/resources/alert?view=graph-rest-1.0).
179
179
180
-
---
180
+
---
181
+
182
+
183
+
## Next steps
184
+
185
+
This article described the schemas that Azure Security Center's threat protection tools use when sending security alert information.
186
+
187
+
For more information on the ways to access security alerts from outside Security Center, see the following:
-[Log Analytics workspaces](https://docs.microsoft.com/azure/azure-monitor/learn/quick-create-workspace) - Azure Monitor stores log data in a Log Analytics workspace, a container that includes data and configuration information
0 commit comments