Forum Discussion
j0ebeer
Jun 16, 2021Copper Contributor
Translate Splunk query to Sentinel
Is there a good source/site to translate Splunk queries into Kusto/Sentinel? I've managed to get the first part but it's the second part that is the challenge. This is what I'm looking to translate...
GaryBushey
Jun 16, 2021Bronze Contributor
j0ebeer You can start here: https://docs.microsoft.com/en-us/azure/data-explorer/kusto/query/splunk-cheat-sheet