| Secure ITSM integrations with Azure Monitor Secure Webhook |
https://learn.microsoft.com/en-us/azure/azure-monitor/alerts/it-service-management-connector-secure-webhook-connections |
| Configure Azure for Secure Webhook ITSM integrations |
https://learn.microsoft.com/en-us/azure/azure-monitor/alerts/itsm-connector-secure-webhook-connections-azure-configuration |
| Use Application Insights smart detection to identify security issues |
https://learn.microsoft.com/en-us/azure/azure-monitor/alerts/proactive-application-security-detection-pack |
| Enable Microsoft Entra authentication for Application Insights ingestion |
https://learn.microsoft.com/en-us/azure/azure-monitor/app/azure-ad-authentication |
| Configure IP address handling in Application Insights |
https://learn.microsoft.com/en-us/azure/azure-monitor/app/ip-collection |
| Migrate Container Insights from legacy to managed identity authentication |
https://learn.microsoft.com/en-us/azure/azure-monitor/containers/container-insights-authentication |
| Configure secure access to Live Data in Container insights |
https://learn.microsoft.com/en-us/azure/azure-monitor/containers/container-insights-livedata-setup |
| Choose TLS options for Azure Monitor pipeline ingestion |
https://learn.microsoft.com/en-us/azure/azure-monitor/data-collection/pipeline-tls |
| Configure automated TLS certificates for Azure Monitor pipeline |
https://learn.microsoft.com/en-us/azure/azure-monitor/data-collection/pipeline-tls-automated |
| Configure customer-managed TLS for Azure Monitor pipeline |
https://learn.microsoft.com/en-us/azure/azure-monitor/data-collection/pipeline-tls-custom |
| Configure Azure Monitor network and firewall access |
https://learn.microsoft.com/en-us/azure/azure-monitor/fundamentals/azure-monitor-network-access |
| Securely configure and deploy Azure Monitor |
https://learn.microsoft.com/en-us/azure/azure-monitor/fundamentals/best-practices-security |
| Configure Network Security Perimeter for Azure Monitor |
https://learn.microsoft.com/en-us/azure/azure-monitor/fundamentals/network-security-perimeter |
| Apply Network Security Perimeter scenarios to Azure Monitor |
https://learn.microsoft.com/en-us/azure/azure-monitor/fundamentals/network-security-perimeter-scenarios |
| Built-in Azure Policy definitions for Azure Monitor |
https://learn.microsoft.com/en-us/azure/azure-monitor/fundamentals/policy-reference |
| Configure Azure Monitor access via Private Link |
https://learn.microsoft.com/en-us/azure/azure-monitor/fundamentals/private-link-security |
| Apply RBAC roles and permissions in Azure Monitor |
https://learn.microsoft.com/en-us/azure/azure-monitor/fundamentals/roles-permissions-security |
| Apply RBAC roles and permissions in Azure Monitor |
https://learn.microsoft.com/en-us/azure/azure-monitor/fundamentals/roles-permissions-security |
| Use Azure Policy compliance controls for Azure Monitor |
https://learn.microsoft.com/en-us/azure/azure-monitor/fundamentals/security-controls-policy |
| Use Azure Policy compliance controls for Azure Monitor |
https://learn.microsoft.com/en-us/azure/azure-monitor/fundamentals/security-controls-policy |
| Register Entra app for Azure Monitor API tokens |
https://learn.microsoft.com/en-us/azure/azure-monitor/logs/api/register-app-for-token |
| Configure customer-managed keys for Azure Monitor logs |
https://learn.microsoft.com/en-us/azure/azure-monitor/logs/customer-managed-keys |
| Design granular RBAC for Azure Monitor Log Analytics |
https://learn.microsoft.com/en-us/azure/azure-monitor/logs/granular-rbac-log-analytics |
| Configure row-level access with granular RBAC in Log Analytics |
https://learn.microsoft.com/en-us/azure/azure-monitor/logs/granular-rbac-use-case |
| Configure access control for Log Analytics workspaces |
https://learn.microsoft.com/en-us/azure/azure-monitor/logs/manage-access |
| Configure table-level RBAC access in Log Analytics |
https://learn.microsoft.com/en-us/azure/azure-monitor/logs/manage-table-access |
| Manage access control for Azure Monitor workspaces |
https://learn.microsoft.com/en-us/azure/azure-monitor/metrics/azure-monitor-workspace-manage-access |
| Monitor Entra authentication logs for Azure Cache for Redis |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-logs/microsoft-cache-redis-logs |
| Azure Monitor WAF log categories for CDN policies |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/supported-logs/microsoft-cdn-cdnwebapplicationfirewallpolicies-logs |
| Analyze Defender serverless security plugin data logs |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/appserviceserverlesssecurityplugindata |
| Use ArcK8sAudit Kubernetes API audit logs |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/arck8saudit |
| Analyze ArcK8sAuditAdmin modifying Kubernetes API operations |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/arck8sauditadmin |
| Analyze AzureAttestationDiagnostics attestation request logs |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/azureattestationdiagnostics |
| Use AzureDevOpsAuditing logs to track DevOps changes |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/azuredevopsauditing |
| Leverage BehaviorAnalytics Sentinel UEBA enriched events |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/behavioranalytics |
| Use BehaviorEntities table for Defender entity behaviors |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/behaviorentities |
| Analyze BehaviorInfo table for Defender behavior insights |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/behaviorinfo |
| Use CampaignInfo table for Defender for Office 365 campaigns |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/campaigninfo |
| Analyze CassandraAudit CQL operation and login audit logs |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/cassandraaudit |
| Understand DatabricksRBAC audit log schema in Azure Monitor |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/databricksrbac |
| Review DatabricksRemoteHistoryService credential audit schema |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/databricksremotehistoryservice |
| Use DatabricksRFA access request audit logs |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/databricksrfa |
| Inspect DatabricksSecrets audit log schema |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/databrickssecrets |
| Analyze DatabricksSQLPermissions audit log schema |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/databrickssqlpermissions |
| Use DatabricksSSH audit log table schema |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/databricksssh |
| Monitor GCPIAM identity and access logs in Sentinel |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/gcpiam |
| Query GoogleCloudSCC security findings in Sentinel |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/googlecloudscc |
| Monitor HDInsightGatewayAuditLogs authentication activity |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/hdinsightgatewayauditlogs |
| Audit Azure AD tenant activity with Monitor tables |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/microsoft-graph-tenants |
| Monitor Azure Cloud HSM commands and activity |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/microsoft-hardwaresecuritymodules-cloudhsmclusters |
| Audit Azure API for FHIR with Monitor tables |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/microsoft-healthcareapis-services |
| Monitor Azure Health Data DICOM service activity |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/microsoft-healthcareapis-workspaces |
| Audit Azure Health Data de-identification service actions |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/microsoft-healthdataaiservices-deidservices |
| Audit Windows 365 operations with Intune logs |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/microsoft-intune-operations |
| Monitor and audit Azure Key Vault access and policy |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/microsoft-keyvault-vaults |
| Audit Kubernetes API activity on Arc-connected clusters |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/microsoft-kubernetes-connectedclusters |
| Audit Nexus bare metal machine security and metrics logs |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/microsoft-networkcloud-baremetalmachines |
| Audit Synapse RBAC operations with SynapseRbacOperations logs |
https://learn.microsoft.com/en-us/azure/azure-monitor/reference/tables/synapserbacoperations |
| Run resource-scoped Prometheus queries securely in Grafana |
https://learn.microsoft.com/en-us/azure/azure-monitor/visualize/grafana-resource-scoped-queries |
| Call Azure Monitor-managed Grafana APIs with Entra ID |
https://learn.microsoft.com/en-us/azure/azure-monitor/visualize/visualize-call-grafana-api |
| Secure Azure Monitor workbooks with customer storage |
https://learn.microsoft.com/en-us/azure/azure-monitor/visualize/workbooks-bring-your-own-storage |