Azure Monitor alerts

%3CLINGO-SUB%20id%3D%22lingo-sub-2143298%22%20slang%3D%22en-US%22%3ERE%3A%20Early%20access%3A%20Threat%20%26amp%3Bamp%3B%20vulnerability%20management%20AMA%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2143298%22%20slang%3D%22en-US%22%3E%3CP%3ETo%20build%20on%20this%20-%20how%20about%20making%20the%20data%20accessible%20via%20Azure%20Monitor%20alerting%3F%20Then%20we%20could%20send%20alerts%20to%20whichever%20destination%20we%20like%2C%20e.g.%20email%20or%20webhooks%20(e.g.%20Slack%2FTeams).%3C%2FP%3E%3C%2FLINGO-BODY%3E
Occasional Contributor

To build on this - how about making the data accessible via Azure Monitor alerting? Then we could send alerts to whichever destination we like, e.g. email or webhooks (e.g. Slack/Teams).

2 Replies

@simonphillips that's great feedback. Will a Flow connector address your scenario? That's something the team is looking into. 

That would definitely work for us, provided there was enough configurability about when it was fired. Ideally I'd have azure monitor alerts fire whenever devices were not compliant - as well as for any incidents/ATP alerts, so our team can investigate and remediate.
www.000webhost.com