Note
Access to this page requires authorization. You can try signing in or changing directories.
Access to this page requires authorization. You can try changing directories.
Table | Categories | Solutions | Supports basic log plan | Queries |
---|---|---|---|---|
ASimProcessEventLogs The Microsoft Sentinel process events normalized table stores events using the Process Event ASIM normalized schema associated with creation or termination of a process. Such events are reported by operating systems and security systems, such as EDR (End Point Detection and Response) systems. |
security | SecurityInsights | Yes | - |