Field Search

Map fields to tables and requirements.

Search a schema field and see every table containing it, plus the source product, required license, and API used to query it.

5 field matches

FieldTypeTableSourceLicenseAPI
InitiatingProcessAccountSid

Security identifier of the account context that initiated the process.

stringDeviceProcessEventsMicrosoft Defender for EndpointMicrosoft Defender for Endpoint P2Microsoft Graph Security APIMicrosoft Defender for Endpoint APIsLegacy Microsoft Defender XDR APIs
InitiatingProcessAccountSid

Security identifier of the account that ran the process responsible for the event.

stringDeviceFileEventsMicrosoft Defender for EndpointMicrosoft Defender for Endpoint P2Microsoft Graph Security APIMicrosoft Defender for Endpoint APIsLegacy Microsoft Defender XDR APIs
InitiatingProcessAccountSid

Security identifier of the account that ran the process responsible for the network event.

stringDeviceNetworkEventsMicrosoft Defender for EndpointMicrosoft Defender for Endpoint P2Microsoft Graph Security APIMicrosoft Defender for Endpoint APIsLegacy Microsoft Defender XDR APIs
InitiatingProcessAccountSid

Security identifier of the account that ran the process responsible for the registry event.

stringDeviceRegistryEventsMicrosoft Defender for EndpointMicrosoft Defender for Endpoint P2Microsoft Graph Security APIMicrosoft Defender for Endpoint APIsLegacy Microsoft Defender XDR APIs
InitiatingProcessAccountSid

Security identifier of the account that ran the process responsible for loading the image.

stringDeviceImageLoadEventsMicrosoft Defender for EndpointMicrosoft Defender for Endpoint P2Microsoft Graph Security APIMicrosoft Defender for Endpoint APIsLegacy Microsoft Defender XDR APIs