AlienVault® USM Anywhere™

Viewing Your Office 365 Events

Role Availability Read-Only Analyst Manager

With a configured AlienApp for Office 365, USM Anywhere collects, enriches, and analyzes log data from your Microsoft Office 365 environment, detecting any suspicious activity, such as login failures and brute forceTechnique or attack method, typically used with authentication, involving an exhaustive procedure that tries all possibilities (for example, to find a valid password), one-by-one. authentications. When USM Anywhere detects a threat, it generates an alarmAlarms provide notification of an event or sequence of events that require attention or investigation..

After the USM Anywhere Sensor collects the first Office 365 log data and USM Anywhere normalizesNormalization describes the translation of log file entries received from disparate types of monitored assets into the standardized framework of Event types and sub-types. the raw data, these events start appearing in the Events page. To provide a more focused view of these events, there are Office 365 dashboards available under Dashboards in the top navigation menu.

View one of the Office 365 dashboards in USM Anywhere