Azure-Sentinel/ASIM/README.md

2.3 KiB

Deploy ASIM

This template deploys all ASIM parsers. The Advanced SIEM Information Model (ASIM) enables you to use and create source-agnostic content, simplifying your analysis of the data in your Microsoft Sentinel workspace.

For more information, see Normalization and the Advanced SIEM Information Model (ASIM)


Deploy to Azure

Deploy to Azure Gov


To deploy a single schema use the buttons below:

ASim Schema Deploy Deploy to Azure Gov
Authentication Deploy to Azure
Dns Deploy to Azure Deploy to Azure Gov
File Event Deploy to Azure
Network Session Deploy to Azure Deploy to Azure Gov
Web Session Deploy to Azure Deploy to Azure Gov
Process Event Deploy to Azure
Registry Deploy to Azure