{
  "Name": "RubrikSecurityCloud",
  "Author": "Ben Meadowcroft - ben.meadowcroft@rubrik.com",
  "Logo": "<img src=\"https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Logos/rubrikLogo.svg\" width=\"75px\" height=\"75px\">",
  "Description": "The [Rubrik Security Cloud](https://www.rubrik.com/) solution enables security operations teams to integrate insights from Rubrik’s Data Observability services into Microsoft Sentinel. \n\n**Underlying Microsoft Technologies used:**\n\nThis solution takes a dependency on the following technologies, and some of these dependencies either may be in [Preview](https://azure.microsoft.com/support/legal/preview-supplemental-terms/) state or might result in additional ingestion or operational costs:\n\na. [Azure Monitor HTTP Data Collector API](https://learn.microsoft.com/azure/azure-monitor/logs/data-collector-api)\n\nb. [Azure Functions](https://azure.microsoft.com/products/functions/#overview)",
  "Playbooks": [
    "Playbooks/RubrikCustomConnector/Rubrik_custom_conn.json",
    "Playbooks/RubrikAnomalyAnalysis/azuredeploy.json",
    "Playbooks/RubrikAnomalyIncidentResponse/azuredeploy.json",
    "Playbooks/RubrikDataObjectDiscovery/azuredeploy.json",
    "Playbooks/RubrikFilesetRansomwareDiscovery/azuredeploy.json",
    "Playbooks/RubrikIOCScan/azuredeploy.json",
    "Playbooks/RubrikPollAsyncResult/azuredeploy.json",
    "Playbooks/RubrikRansomwareDiscoveryAndFileRecovery/azuredeploy.json",
    "Playbooks/RubrikRansomwareDiscoveryAndVMRecovery/azuredeploy.json",
    "Playbooks/RubrikFileObjectContextAnalysis/azuredeploy.json",
    "Playbooks/RubrikUserIntelligenceAnalysis/azuredeploy.json",
    "Playbooks/RubrikRetrieveUserIntelligenceInformation/azuredeploy.json",
    "Playbooks/RubrikAnomalyGenerateDownloadableLink/azuredeploy.json",
    "Playbooks/RubrikWorkloadAnalysis/azuredeploy.json",
    "Playbooks/RubrikUpdateAnomalyStatus/azuredeploy.json",
    "Playbooks/RubrikUpdateAnomalyStatusViaIncident/azuredeploy.json",
    "Playbooks/RubrikAdvanceThreatHunt/azuredeploy.json",
    "Playbooks/RubrikTurboThreatHunt/azuredeploy.json"
  ],
  "Data Connectors": [
    "Data Connectors/RubrikWebhookEvents/RubrikWebhookEvents_FunctionApp.json",
    "Data Connectors/RubrikSecurityCloud_CCF/RubrikSecurityCloud_ConnectorDefinition.json",
    "Data Connectors/RubrikCCFConnector/RubrikSecurityCloud_ConnectorDefinition.json"
  ],
  "Analytic Rules": [
    "Analytic Rules/RubrikCriticalAnomaly.yaml",
    "Analytic Rules/RubrikThreatMonitoring.yaml"
  ],
  "BasePath": "C:\\GitHub\\Azure-Sentinel\\Solutions\\RubrikSecurityCloud",
  "Version": "3.5.3",
  "Metadata": "SolutionMetadata.json",
  "TemplateSpec": true,
  "Is1PConnector": false
}
