After creating a new Azure subscription, you are tasked with ensuring that custom alert rules can be created in Azure Security Center.
You have created an Azure Storage account.
Which action should you take?
Custom log-based alert rules require a Log Analytics workspace as the target data store for collected logs and queries. Microsoft Defender for Cloud (formerly Azure Security Center) integrates with Log Analytics, and Azure Monitor creates custom log-search alert rules against that workspace.
Community Discussion