Managed Sentinel – Alert 084
Alert ID | MS-A084 |
Alert Name | Microsoft Azure Identity Protection alert |
Description | This alert notifies on Azure Identity Protection alerts sent to Azure Sentinel. The details are provided in the alert body |
Severity Level | Medium |
Threat Indicator | Unauthorized Access |
MITRE ATT&CK Tactics | Credential Access Priviledge Escalation |
Log sources | Azure Identity Protection |
False Positives | Please review every alert for potential false positive. Some detection types requires an extensive time for tunning before reducing the volume of false positives |
Recommendations | Each alert type is documented by Microsoft here: https://docs.microsoft.com/en-us/azure/active-directory/reports-monitoring/concept-risk-events |