Security
● Sealed v1.0 (treated)
Security Event
Converts a Windows security event to an enriched security event object.
What it does
Maps security event properties (Id, TimeCreated, MachineName, LogName) to enriched columns (EventId, Severity, Category, EventTime, EventSource, ObjectType). Follows SolarWinds discovery plugin pattern for security event telemetry.
How the app exposes it
The module feeds into the ACQI app's dedicated results view. From there, conflicts, dependencies, and readiness scores roll up into the deal workspace.
Route in app:
/discovered/security-event Outputs
Each module produces a CSV with readiness and risk scores, evidence-source counts, and last-seen timestamps. The exact columns vary by module — the app's results view shows the live schema.