Views:

Configure the integration to view Trend Vision One Workbench alerts and Observed Attack Techniques events directly in the Microsoft Sentinel platform.

The connector includes the following resources to enhance your monitoring and investigation capabilities:
  • Workbook that provides insights into alert trends and impacted hosts
  • Rule templates to create incidents for alerts based on severity

Procedure

  1. Create a Microsoft Sentinel workspace.
  2. Configure and deploy the connector.
    For more information, see Deploying the Trend Vision One connector.
  3. Check ingested data in your Log Analytics workspace.