{
    "Name": "Authomize",
    "Author": "Authomize - support@authomize.com",
    "Logo": "<img src=\"https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Logos/Authomize.svg\" width=\"75px\" height=\"75px\">",
    "Description": "The [Authomize Solution](https://authomize.com) integrates Authomize with Microsoft Sentinel to monitor and analyze security events from Authomize.",
    "WorkbookBladeDescription": "This Microsoft Sentinel Solution installs workbooks. Workbooks provide a flexible canvas for data monitoring, analysis, and the creation of rich visual reports within the Azure portal. They allow you to tap into one or many data sources from Microsoft Sentinel and combine them into unified interactive experiences.",
    "AnalyticalRuleBladeDescription": "This solution installs analytic rules. After installing the solution, create and enable analytic rules in Manage solution view. ",
    "HuntingQueryBladeDescription": "This solution installs hunting queries. After installing the solution, run these hunting queries to hunt for threats in Manage solution view",
    "Workbooks": [
      "Workbooks/Authomize.json"
    ],
    "Analytic Rules": [
      "Analytic Rules/Access_to_AWS_without_MFA.yaml",
      "Analytic Rules/Admin_password_wasnt_updated.yaml",
      "Analytic Rules/Admin_SaaS_account_detected.yaml",
      "Analytic Rules/AWS_role_with_admin_privileges.yaml",
      "Analytic Rules/AWS_role_with_shadow_admin_privileges.yaml",
      "Analytic Rules/Chain_of_3_or_more_roles.yaml",
      "Analytic Rules/Detect_AWS_IAM_Users.yaml",
      "Analytic Rules/Empty_group_with_entitlements.yaml",
      "Analytic Rules/IaaS_admin_detected.yaml",
      "Analytic Rules/IaaS_policy_not_attached_to_any_identity.yaml",
      "Analytic Rules/IaaS_shadow_admin_detected.yaml",
      "Analytic Rules/New_direct_access_policy_was_granted.yaml",
      "Analytic Rules/New_service_account_gained_access_to_IaaS_resource.yaml",
      "Analytic Rules/Password_Exfiltration_over_SCIM.yaml",
      "Analytic Rules/Privileged_Machines_Exposed_to_the_Internet.yaml",
      "Analytic Rules/Refactor_AWS_policy_based_on_activities.yaml",
      "Analytic Rules/Stale_AWS_policy_attachment_to_identity.yaml",
      "Analytic Rules/Stale_IAAS_policy_attachment_to_role.yaml",
      "Analytic Rules/Unused_IaaS_Policy.yaml",
      "Analytic Rules/User_assigned_to_a_default_admin_role.yaml",
      "Analytic Rules/User_without_MFA.yaml"

    ],
    "Hunting Queries": [
      "/Hunting queries/Admin_SaaS_account_detected.yaml",
      "/Hunting queries/Chain_of_3_or_more_roles.yaml",
      "/Hunting queries/IaaS_admin_detected.yaml",
      "/Hunting queries/IaaS_shadow_admin_detected.yaml",
      "/Hunting queries/Password_Exfiltration_over_SCIM_application.yaml",
      "/Hunting queries/Privileged_Machines_Exposed_to_the_Internet.yaml"
    ],
    "Data Connectors": [
      "Data Connectors/AuthomizeCustomConnector.json"
    ],
    "Watchlists": [],
    "WatchlistDescription": [],
    "BasePath": "C:/GitHub/Azure-Sentinel/Solutions/Authomize/",
    "Version": "3.0.0",
    "Metadata": "SolutionMetadata.json",
    "TemplateSpec": true,
    "Is1Pconnector": false
  }
  