Join the #BuildWithBuildAgent Challenge! Get recognized, earn exclusive swag, and inspire the ServiceNow Community with what you can build using Build Agent.  Join the Challenge.

Send Servicenow logs to Azure Sentinel (Cloud SIEM) using Kafka

ankit_dubey97
Tera Contributor

Hello,

 

I need to send ServiceNow's system & audit logs to an Azure Sentinel. 

What is the best approach?
From the documentation (Log Export Service (LES) (servicenow.com)) it would seem to be to use Kafka cloud-to-cloud (at least for Splunk) but I can find very limited documentation on this. Could anyone tell me the exact steps to implement both on ServiceNow and Azure Sentinel?

Thank you very much.

0 REPLIES 0