Join the #BuildWithBuildAgent Challenge! Get recognized, earn exclusive swag, and inspire the ServiceNow Community with what you can build using Build Agent.  Join the Challenge.

Mapping MITRE Technique from Azure Sentinel

rawdy
Tera Contributor

Hi all

has anyone successfully mapped the MITRE Technique ID/Name from Azure Sentinel source data into the Security Incident?  

We have been informed from our analysts that the Technique is available for the Sentinel incidents but it does not appear anywhere that we can see in the incident raw or source attributes for us to be able to map.  

Many thanks

5 REPLIES 5

vishalrawat
Tera Contributor

Hi All,
Did anyone find any solution as I am also facing the same problem.