Skip to content

Latest commit

 

History

History
32 lines (23 loc) · 799 Bytes

File metadata and controls

32 lines (23 loc) · 799 Bytes
title description ms.topic ms.service ms.subservice ms.author author ms.date
Azure Monitor Logs reference - DeviceEvents
Reference for DeviceEvents table in Azure Monitor Logs.
reference
azure-monitor
logs
edbaynash
EdB-MSFT
03/05/2024

DeviceEvents

This table is part of Microsoft Defender for Endpoints with Azure Sentinel. This table contains Multiple event types, including events triggered by security controls such as Windows Defender Antivirus and exploit protection.

Table attributes

Attribute Value
Resource types -
Categories Security
Solutions SecurityInsights
Basic log No
Ingestion-time transformation Yes
Sample Queries -

Columns

[!INCLUDE deviceevents]