Anomalous Logins

Anomalous logins may signify suspicious activity. This often includes logins of a user into computers they don't normally log into, logins outside of a routine pattern on certain days of the week, also by time of day, or logins into a particular workstation or server outside of a certain set of users.
AIS Managed SIEM

SIEM Events

Office 365 New Country Activity

Last modified September 14, 2021