You have a Microsoft 365 E5 subscription and a Microsoft Sentinel workspace.
You need to create a KQL query that will combine data from the following sources:
• Microsoft Graph
• Risky users detected by using Microsoft Entra ID Protection
The solution must minimize the volume of data returned.
How should the query start?
Adel614
1 month, 3 weeks agoOptimizor_IT
2 months, 1 week agoBlasty
3 months, 3 weeks agorkrau
4 months, 2 weeks ago