Is there any plan or in a roadmap to support pulling Azure Security Center logs/alerts as mentioned in this Microsoft article https://docs.microsoft.com/en-us/azure/security/security-azure-log-integration-overview.
These logs should show up in the Audit.General schema, which is supported in the 2.1 version of the MS Cloud Services add-on -> https://splunkbase.splunk.com/app/3110/
is it the mscs:azure:audit sourcetype ?