Forum Discussion
KrishhnaM
Nov 09, 2020Copper Contributor
Day/week/Time based Analytical (scheduled) rule in Azure Sentinel
Hi Community, I am currently working with a client on a certain requirement for detection of an office 365 message activity based on time and date. below business use case in detail Use ca...
GaryBushey
Nov 10, 2020Bronze Contributor
KrishhnaM You could use a dayofweek function to determine if it is a weekend or not and then and iif statement to handle different hour of the day processing.
CliveWatson
Nov 10, 2020Former Employee
Some examples: https://techcommunity.microsoft.com/t5/azure-sentinel/how-to-align-your-analytics-with-time-windows-in-azure-sentinel/ba-p/1667574