↳ GitHub sourceConnector

Field Effect MDR Data Connector (via Codeless Connector Framework)

Description

This solution enables Microsoft Sentinel to ingest Field Effect MDR data using the Codeless Connector Framework (CCF). The connector polls the Field Effect ARO API and sends results to a Log Analytics custom table for hunting, correlation, and alerting within Sentinel.
Declared author / publisher
Field Effect

Declared sources

Metadata from the source file. No dependencies inferred from KQL.

Data types

Declared permissions

Read and Write permissions are required.
Workspace
Workspace

Connector instructions

Content published in the repository. Refer to the original file for all parameters.

Configure Field Effect Connector
1. In the Field Effect MDR portal, generate an API Key. 2. Copy your Organization ID from the portal. 3. Enter both values below and connect.
API Key
Organization ID

Related content

Links established from declared identifiers and solution manifests.

Source provenance

GitHub

Displayed values come from files in Azure/Azure-Sentinel. They describe the published template, not your workspace configuration.

Source identifier
FieldEffectCCF
Additional source files 2Solutions/FieldEffectMDR/Data Connectors/FieldEffect_ConnectorDefinition.jsonsource ↗Solutions/FieldEffectMDR/Data/Solution_FieldEffect.jsonsolution-membership ↗
GSTEP / CATALOG TRACKING

Added to catalog : 16 Sept 2026 · 05:49 UTC
Last change observed : 16 Sept 2026 · 05:49 UTC

GSTEP sync dates, separate from the source content’s publication dates.