Skip to content

Commit b86bd4b

Browse files
committed
Added note on latency in Cloud Discovery data
1 parent 73af96d commit b86bd4b

File tree

1 file changed

+5
-0
lines changed

1 file changed

+5
-0
lines changed

articles/sentinel/connect-cloud-app-security.md

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -47,6 +47,11 @@ If Cloud App Security is deployed and ingesting your data, the alert data can ea
4747

4848
1. To use the relevant schema in Log Analytics for the Cloud App Security alerts, search for **SecurityAlert**.
4949

50+
> [!NOTE]
51+
> Cloud Discovery helps with detecting and identifying trends in the aggregate data underlying all of the user connections to cloud apps.
52+
Since Cloud Discovery data is aggregated on a per-day basis, be aware that up to 24 hours' worth of the most recent data will not be reflected in Azure Sentinel.
53+
In specific cases where more immediate data is required for a low-level investigation, it should be done directly in the source appliance or service where the raw data resides.
54+
5055

5156

5257

0 commit comments

Comments
 (0)