This commit is contained in:
v-atulyadav 2023-07-17 16:04:47 +05:30
Родитель b873c12e7a
Коммит 7cfb2b2203
2 изменённых файлов: 14 добавлений и 14 удалений

Двоичный файл не отображается.

Просмотреть файл

@ -290,7 +290,7 @@
"kind": "shared",
"apiVersion": "2021-08-01",
"metadata": {
"description": "Built by Microsoft's Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence."
"description": "Built by Microsoft Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence."
},
"properties": {
"displayName": "[parameters('workbook1-name')]",
@ -305,7 +305,7 @@
"apiVersion": "2022-01-01-preview",
"name": "[concat(parameters('workspace'),'/Microsoft.SecurityInsights/',concat('Workbook-', last(split(variables('workbookId1'),'/'))))]",
"properties": {
"description": "@{workbookKey=SOCProcessFramework; logoFileName=Azure_Sentinel.svg; description=Built by Microsoft's Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence.; dataTypesDependencies=System.Object[]; dataConnectorsDependencies=System.Object[]; previewImagesFileNames=System.Object[]; version=1.1.0; title=SOC Process Framework; templateRelativePath=SOCProcessFramework.json; subtitle=; provider=Microsoft Sentinel Community}.description",
"description": "@{workbookKey=SOCProcessFramework; logoFileName=Azure_Sentinel.svg; description=Built by Microsoft Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence.; dataTypesDependencies=System.Object[]; dataConnectorsDependencies=System.Object[]; previewImagesFileNames=System.Object[]; version=1.1.0; title=SOC Process Framework; templateRelativePath=SOCProcessFramework.json; subtitle=; provider=Microsoft Sentinel Community}.description",
"parentId": "[variables('workbookId1')]",
"contentId": "[variables('_workbookContentId1')]",
"kind": "Workbook",
@ -365,7 +365,7 @@
"kind": "shared",
"apiVersion": "2021-08-01",
"metadata": {
"description": "Built by Microsoft's Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence."
"description": "Built by Microsoft Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence."
},
"properties": {
"displayName": "[parameters('workbook2-name')]",
@ -380,7 +380,7 @@
"apiVersion": "2022-01-01-preview",
"name": "[concat(parameters('workspace'),'/Microsoft.SecurityInsights/',concat('Workbook-', last(split(variables('workbookId2'),'/'))))]",
"properties": {
"description": "@{workbookKey=Building_a_SOCLargeStaffWorkbook; logoFileName=Azure_Sentinel.svg; description=Built by Microsoft's Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence.; dataTypesDependencies=System.Object[]; dataConnectorsDependencies=System.Object[]; previewImagesFileNames=System.Object[]; version=1.1.0; title=SOC Large Staff; templateRelativePath=Building_a_SOCLargeStaff.json; subtitle=; provider=Microsoft Sentinel Community}.description",
"description": "@{workbookKey=Building_a_SOCLargeStaffWorkbook; logoFileName=Azure_Sentinel.svg; description=Built by Microsoft Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence.; dataTypesDependencies=System.Object[]; dataConnectorsDependencies=System.Object[]; previewImagesFileNames=System.Object[]; version=1.1.0; title=SOC Large Staff; templateRelativePath=Building_a_SOCLargeStaff.json; subtitle=; provider=Microsoft Sentinel Community}.description",
"parentId": "[variables('workbookId2')]",
"contentId": "[variables('_workbookContentId2')]",
"kind": "Workbook",
@ -440,7 +440,7 @@
"kind": "shared",
"apiVersion": "2021-08-01",
"metadata": {
"description": "Built by Microsoft's Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence."
"description": "Built by Microsoft Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence."
},
"properties": {
"displayName": "[parameters('workbook3-name')]",
@ -455,7 +455,7 @@
"apiVersion": "2022-01-01-preview",
"name": "[concat(parameters('workspace'),'/Microsoft.SecurityInsights/',concat('Workbook-', last(split(variables('workbookId3'),'/'))))]",
"properties": {
"description": "@{workbookKey=Building_a_SOCMediumStaffWorkbook; logoFileName=Azure_Sentinel.svg; description=Built by Microsoft's Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence.; dataTypesDependencies=System.Object[]; dataConnectorsDependencies=System.Object[]; previewImagesFileNames=System.Object[]; version=1.1.0; title=SOC Medium Staff; templateRelativePath=Building_a_SOCMediumStaff.json; subtitle=; provider=Microsoft Sentinel Community}.description",
"description": "@{workbookKey=Building_a_SOCMediumStaffWorkbook; logoFileName=Azure_Sentinel.svg; description=Built by Microsoft Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence.; dataTypesDependencies=System.Object[]; dataConnectorsDependencies=System.Object[]; previewImagesFileNames=System.Object[]; version=1.1.0; title=SOC Medium Staff; templateRelativePath=Building_a_SOCMediumStaff.json; subtitle=; provider=Microsoft Sentinel Community}.description",
"parentId": "[variables('workbookId3')]",
"contentId": "[variables('_workbookContentId3')]",
"kind": "Workbook",
@ -515,7 +515,7 @@
"kind": "shared",
"apiVersion": "2021-08-01",
"metadata": {
"description": "Built by Microsoft's Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence."
"description": "Built by Microsoft Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence."
},
"properties": {
"displayName": "[parameters('workbook4-name')]",
@ -530,7 +530,7 @@
"apiVersion": "2022-01-01-preview",
"name": "[concat(parameters('workspace'),'/Microsoft.SecurityInsights/',concat('Workbook-', last(split(variables('workbookId4'),'/'))))]",
"properties": {
"description": "@{workbookKey=Building_a_SOCSmallStaffWorkbook; logoFileName=Azure_Sentinel.svg; description=Built by Microsoft's Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence.; dataTypesDependencies=System.Object[]; dataConnectorsDependencies=System.Object[]; previewImagesFileNames=System.Object[]; version=1.1.0; title=SOC Small Staff; templateRelativePath=Building_a_SOCSmallStaff.json; subtitle=; provider=Microsoft Sentinel Community}.description",
"description": "@{workbookKey=Building_a_SOCSmallStaffWorkbook; logoFileName=Azure_Sentinel.svg; description=Built by Microsoft Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence.; dataTypesDependencies=System.Object[]; dataConnectorsDependencies=System.Object[]; previewImagesFileNames=System.Object[]; version=1.1.0; title=SOC Small Staff; templateRelativePath=Building_a_SOCSmallStaff.json; subtitle=; provider=Microsoft Sentinel Community}.description",
"parentId": "[variables('workbookId4')]",
"contentId": "[variables('_workbookContentId4')]",
"kind": "Workbook",
@ -590,7 +590,7 @@
"kind": "shared",
"apiVersion": "2021-08-01",
"metadata": {
"description": "Built by Microsoft's Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence."
"description": "Built by Microsoft Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence."
},
"properties": {
"displayName": "[parameters('workbook5-name')]",
@ -605,7 +605,7 @@
"apiVersion": "2022-01-01-preview",
"name": "[concat(parameters('workspace'),'/Microsoft.SecurityInsights/',concat('Workbook-', last(split(variables('workbookId5'),'/'))))]",
"properties": {
"description": "@{workbookKey=Building_a_SOCPartTimeStaffWorkbook; logoFileName=Azure_Sentinel.svg; description=Built by Microsoft's Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence.; dataTypesDependencies=System.Object[]; dataConnectorsDependencies=System.Object[]; previewImagesFileNames=System.Object[]; version=1.1.0; title=SOC Part Time Staff; templateRelativePath=Building_a_SOCPartTimeStaff.json; subtitle=; provider=Microsoft Sentinel Community}.description",
"description": "@{workbookKey=Building_a_SOCPartTimeStaffWorkbook; logoFileName=Azure_Sentinel.svg; description=Built by Microsoft Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence.; dataTypesDependencies=System.Object[]; dataConnectorsDependencies=System.Object[]; previewImagesFileNames=System.Object[]; version=1.1.0; title=SOC Part Time Staff; templateRelativePath=Building_a_SOCPartTimeStaff.json; subtitle=; provider=Microsoft Sentinel Community}.description",
"parentId": "[variables('workbookId5')]",
"contentId": "[variables('_workbookContentId5')]",
"kind": "Workbook",
@ -665,7 +665,7 @@
"kind": "shared",
"apiVersion": "2021-08-01",
"metadata": {
"description": "Built by Microsoft's Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence."
"description": "Built by Microsoft Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence."
},
"properties": {
"displayName": "[parameters('workbook6-name')]",
@ -680,7 +680,7 @@
"apiVersion": "2022-01-01-preview",
"name": "[concat(parameters('workspace'),'/Microsoft.SecurityInsights/',concat('Workbook-', last(split(variables('workbookId6'),'/'))))]",
"properties": {
"description": "@{workbookKey=SOCIRPlanningWorkbook; logoFileName=Azure_Sentinel.svg; description=Built by Microsoft's Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence.; dataTypesDependencies=System.Object[]; dataConnectorsDependencies=System.Object[]; previewImagesFileNames=System.Object[]; version=1.1.0; title=SOC IR Planning; templateRelativePath=SOCIRPlanning.json; subtitle=; provider=Microsoft Sentinel Community}.description",
"description": "@{workbookKey=SOCIRPlanningWorkbook; logoFileName=Azure_Sentinel.svg; description=Built by Microsoft Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence.; dataTypesDependencies=System.Object[]; dataConnectorsDependencies=System.Object[]; previewImagesFileNames=System.Object[]; version=1.1.0; title=SOC IR Planning; templateRelativePath=SOCIRPlanning.json; subtitle=; provider=Microsoft Sentinel Community}.description",
"parentId": "[variables('workbookId6')]",
"contentId": "[variables('_workbookContentId6')]",
"kind": "Workbook",
@ -740,7 +740,7 @@
"kind": "shared",
"apiVersion": "2021-08-01",
"metadata": {
"description": "Built by Microsoft's Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence."
"description": "Built by Microsoft Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence."
},
"properties": {
"displayName": "[parameters('workbook7-name')]",
@ -755,7 +755,7 @@
"apiVersion": "2022-01-01-preview",
"name": "[concat(parameters('workspace'),'/Microsoft.SecurityInsights/',concat('Workbook-', last(split(variables('workbookId7'),'/'))))]",
"properties": {
"description": "@{workbookKey=UpdateSOCMaturityScoreWorkbook; logoFileName=Azure_Sentinel.svg; description=Built by Microsoft's Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence.; dataTypesDependencies=System.Object[]; dataConnectorsDependencies=System.Object[]; previewImagesFileNames=System.Object[]; version=1.1.0; title=Update SOC Maturity Score; templateRelativePath=UpdateSOCMaturityScore.json; subtitle=; provider=Microsoft Sentinel Community}.description",
"description": "@{workbookKey=UpdateSOCMaturityScoreWorkbook; logoFileName=Azure_Sentinel.svg; description=Built by Microsoft Sentinel GBB's - This workbook contains years of SOC Best Practices and is intended to help SOCs mature and leverage industry standards in Operationalizing their SOC in using Microsoft Sentinel. It contains Processes and Procedures every SOC should consider and builds a high level of operational excellence.; dataTypesDependencies=System.Object[]; dataConnectorsDependencies=System.Object[]; previewImagesFileNames=System.Object[]; version=1.1.0; title=Update SOC Maturity Score; templateRelativePath=UpdateSOCMaturityScore.json; subtitle=; provider=Microsoft Sentinel Community}.description",
"parentId": "[variables('workbookId7')]",
"contentId": "[variables('_workbookContentId7')]",
"kind": "Workbook",