Microsoft Security Tech Accelerator
Dec 06 2023, 07:00 AM - 12:00 PM (PST)
Microsoft Tech Community

Sysmon log fields translated to MDE log fields

Iron Contributor

Does anyone know of any documentation that sat Sysmon fields translate to what MDE event fields? Looking to repurpose some Sysmon queries for MDE events and I have not been able to find any docs that shows what Sysmon fields translate to what MDE events fields.



2 Replies
best response confirmed by Jeff Walzer (Iron Contributor)
I can't thank you enough!