{
  "Name": "Theom",
  "Author": "Microsoft - support@microsoft.com",
  "Logo": "<img src=\"https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Logos/theom-logo.svg\" width=\"75px\" height=\"75px\">",
  "Description": "[Theom](https://www.theom.ai/) for Microsoft Sentinel helps you prevent data breaches in the cloud by enabling your Microsoft Sentinel instance to receive critical alerts on data security and access from your Theom environment.\n\n**Underlying Microsoft Technologies used:**\n\nThis solution has a dependency on the following technologies, and some of these dependencies either may be in [Preview](https://azure.microsoft.com/support/legal/preview-supplemental-terms/) state or might result in additional ingestion or operational costs:\n\na. [Azure Monitor HTTP Data Collector API](https://docs.microsoft.com/azure/azure-monitor/logs/data-collector-api)",
  "Data Connectors": [
    "Solutions/Theom/Data Connectors/Theom.json"
  ],
  "Workbooks": [
    "Solutions/Theom/Workbooks/Theom.json"
  ],
  "Analytic Rules": [
    "Solutions/Theom/Analytic Rules/TheomRisksCritical.yaml",
    "Solutions/Theom/Analytic Rules/TheomRisksHigh.yaml",
    "Solutions/Theom/Analytic Rules/TheomRisksMedium.yaml",
    "Solutions/Theom/Analytic Rules/TheomRisksLow.yaml",
    "Solutions/Theom/Analytic Rules/TheomRisksInsights.yaml",
    "Solutions/Theom/Analytic Rules/TRIS0001_Dev_secrets_unencrypted.yaml",
    "Solutions/Theom/Analytic Rules/TRIS0002_National_IDs_unencrypted.yaml",
    "Solutions/Theom/Analytic Rules/TRIS0003_Financial_data_unencrypted.yaml",
    "Solutions/Theom/Analytic Rules/TRIS0004_Healthcare_data_unencrypted.yaml",
    "Solutions/Theom/Analytic Rules/TRIS0005_Unencrypted_public_data_stores.yaml",
    "Solutions/Theom/Analytic Rules/TRIS0007-10_TRIS0014_Critical_data_in_API_headers_or_body.yaml",
    "Solutions/Theom/Analytic Rules/TRIS0012_Dev_secrets_exposed.yaml",
    "Solutions/Theom/Analytic Rules/TRIS0015_Healthcare_data_exposed.yaml",
    "Solutions/Theom/Analytic Rules/TRIS0018_National_IDs_exposed.yaml",
    "Solutions/Theom/Analytic Rules/TRIS0026_Financial_data_exposed.yaml",
    "Solutions/Theom/Analytic Rules/TRIS0032_Dark_Data_with_large_fin_value.yaml",
    "Solutions/Theom/Analytic Rules/TRIS0033_Least_priv_large_value_shadow_DB.yaml",
    "Solutions/Theom/Analytic Rules/TRIS0034_Overprovisioned_Roles_Shadow_DB.yaml",
    "Solutions/Theom/Analytic Rules/TRIS0035_Shadow_DB_large_datastore_value.yaml",
    "Solutions/Theom/Analytic Rules/TRIS0036_Shadow_DB_with_atypical_accesses.yaml"
  ],
  "BasePath": "C:\\One\\Azure-Sentinel",
  "Version": "3.0.0",
  "Metadata": "SolutionMetadata.json",
  "TemplateSpec": true,
  "Is1Pconnector": false
}
