This alert is triggered when securtiy audit log is full and no logging can be done on the particular Windows server.
System monitoring impact
MITRE ATT&CK Tactics
Windows Security Event Log
1. Identify the system(s) that have been affected
2. Review Windows audit log to understand if any large volume of specific event types are collected, which can be an indicator of Operational malfunction
3. Manually clear audit logs table on the Windows system