Microsoft 365 Dashboards

Gain insights into your Microsoft 365 environment with these Kibana dashboards.
Designed to work with the Elastic M365 integration, they provide visualizations for:

  • Exchange Online: Mail traffic, user activity.
  • SharePoint & OneDrive: File operations and user interactions.
  • Teams: Usage and activity metrics.
  • Azure AD: Sign-in logs and audit events.

Contents: Single NDJSON file containing the dashboard objects.

Source: eric-ooi/elastic-m365

Tested versions
ECS compliant

You must log in to submit a review.

Related downloads

Observability Kibana Dashboard

A single pane of glass dashboard for Logs, Metrics, APM data and business KPIs.

Sigma detection rules for proxy server logs

A collection of rules based on the Sigma detection rules for proxy server and web server looks, e.g. zeek or suricata.

Logstash REST to exec scripts

Make Logstash a REST endpoint that executes scripts or manually adds data in Elasticsearch.

Uptime watch using Heartbeat data

This watch checks the availability of your Heartbeat observed services. It will trigger an alert whenever at least one of your services is down.

Ingest Pipeline Monitoring

This Kibana dashboard can be used monitor your ingest pipelines

SigmaHQ Rules Bundle (ECS) – 2026-02-15

Download 1165 Sigma rules for Elastic Security. Includes coverage for MITRE ATT&CK tactics like Execution and Defense Evasion. Compatible with Elastic Stack 8.x and Serverless.

These downloads could be also interesting for you

AWS Cloudtrail Monitoring dashboard

Deep insights into AWS Cloudtrail events for SIEM and Monitoring

Microsoft 365 Dashboards for Elastic

Visualize your Microsoft 365 data in Kibana.

SigmaHQ Rules Bundle (ECS) – 2026-02-15

Download 1165 Sigma rules for Elastic Security. Includes coverage for MITRE ATT&CK tactics like Execution and Defense Evasion. Compatible with Elastic Stack 8.x and Serverless.

ACSC Advisory IOCs detection rules

ACSC Advisory IOCs detection rules for Elastic SIEM

Sigma Sysmon detection rules

A collection of rules based on the Sigma detection rules for Windows Sysmon events based on Winlogbeat data.

CMDB dependency in Kibana Dashboard

Kibana vega example to show how to load visualize relationships between different infrastructure and network components in vega.