Updated: August 7, 2023 (August 7, 2023)
Analyst ReportIn Response to Hacks, Purview Audit Extends Capabilities
- Microsoft 365 Purview Audit logs enable administrators to track activities in Microsoft 365 and other cloud services for investigations and compliance.
- In response to recent attacks, the number and types of events captured in the Audit Standard service tier have been expanded.
- Additionally, a longer default retention period in Audit Standard enables deeper and more comprehensive forensic investigations.
Microsoft 365 Purview Audit, a feature of Microsoft 365 tenancies, provides a centralized collection point for recording events for dozens of Microsoft workloads. Audit is available in two tiers of service, Audit Standard and Audit Premium. Audit Standard, which is packaged with Microsoft 365 E3 plan, is slated for improvements to respond to recent attacks on government sites.
Microsoft 365 Audit Review
With Microsoft 365 Purview Audit, administrators can view and analyze events in the Unified Audit Log, introduced in 2016. The Unified Audit Log records events and associated metadata (such as who performed the action, what files or other resources were affected, the time and date, and so on) from all Microsoft 365 workloads except Sway, as well as Power Apps, Power BI, Dynamics 365, Azure Active Directory, and Defender (including Endpoint). Several hundred such event types are captured in the log.
Atlas Members have full access
Get access to this and thousands of other unbiased analyses, roadmaps, decision kits, infographics, reference guides, and more, all included with membership. Comprehensive access to the most in-depth and unbiased expertise for Microsoft enterprise decision-making is waiting.
Membership OptionsAlready have an account? Login Now