Skip to main content

Azure Security Center—Continuous export of security recommendations and alerts

Published date: March 30, 2020

The continuous export feature of Azure Security Center, which supports the export of your security alerts and recommendations, is now generally available. Use it to easily connect the security data from your Security Center environment to the monitoring tools used by your organization, by exporting to Azure Event Hubs or Azure Log Analytics workspaces.

This capability supports enterprise scale scenarios, among others, via the following integrations:

  • Export to Azure Event Hubs enables integration with Azure Sentinel, third party SIEMs, Azure Data Explorer, and Azure Functions.
  • Export to Azure Log Analytics workspaces enables integration with Microsoft Power BI, custom dashboards, and Azure Monitor.

For more information, read about continuous export.

If you're exporting alerts, ensure you're familiar with the appropriate security alerts schema.

  • Security