"DeviceTvmSoftwareVulnerabilities" Log Mirroring from Microsoft 365 Defender to Microsoft Sentinel

Brass Contributor

Hello,

 

We are trying to get the logs of Threat and Vulnerability management section Tables (Like:

"DeviceTvmSoftwareVulnerabilities") that is exist in Microsoft 365 Defender and display it in Log section in Microsoft sentinel.

Is there a way to do that?

 

Thank you,

 
 
 

 

4 Replies

@Qusai_Ismail 

Hello Quasai,

Here you can find the list of tables you can send from Defender to Sentinel: Connect data from Microsoft 365 Defender to Microsoft Sentinel.

Currently, there is no table called "DeviceTvmSoftwareVulnerabilities". 

If you believe data columns or tables are missing, please participate in the following survey: https://cda.ms/4gy
Is it possible to ingest data from the Software Inventory feature, which is part of Microsoft Defender Vulnerability Management (MDVM) within the Microsoft 365 E5 license, into Microsoft Sentinel via the (new)XDR connector? I can't find this option among the ingestion options for the XDR connector, but I've seen documentation mentioning that it can be used with Log Analytics
https://learn.microsoft.com/en-us/defender-xdr/advanced-hunting-devicetvmsoftwarevulnerabilities-tab...

Thanks in advance
Year 2024
The Same Topic 🙂
Something new?