There are two "sets" of JSON code for integrating Admin By Request with Microsoft Sentinel:

  1. Auditlog JSON code

  2. Events JSON code