Skip to main content

Integration Guide for Microsoft Azure

This guide provides instructions for integrating AlphaSOC with your Microsoft Azure environment. It outlines the process of ingesting telemetry and delivering it to AlphaSOC.

To integrate AlphaSOC with your Microsoft Azure infrastructure:

  1. Configure one or more supported Azure data origins for security monitoring.
  2. Configure Azure Blob Storage to submit telemetry to AlphaSOC.

After completing these steps, your Microsoft Azure environment will be fully configured to collect and send telemetry to AlphaSOC.

Azure Data Origins

AlphaSOC collects and analyzes telemetry from the following Azure services:

  • Kubernetes Service PLANNING: Containerized applications telemetry.
  • VNet Flow Logs: Virtual network traffic.
  • NSG Flow Logs DEPRECATED: Network traffic at the Network Security Group level.

Escalating Findings Transports

For information about receiving findings from AlphaSOC, refer to the Escalating Findings section for a list of supported findings transports. If your preferred transport method is not listed, contact us.