Pull API - data connector
3rd party cloud providers that support pull log files can be integrated with Azure Sentinel.
Syslog is not an option that 100% covers our needs for cloud-era.
Ofer Shezaf commented
You can do this today. In general, Sentinel's mechanism for pull collection is Logic Apps. Use a custom Logic Apps connector (https://docs.microsoft.com/en-us/connectors/custom-connectors/) to get the data and the Azure Log Analytics Data Collector (https://docs.microsoft.com/en-us/connectors/azureloganalyticsdatacollector/) connector to write the data to the Sentinel's workspace.
Andrew Bryant commented
This would be very useful.