Install the application and configure Microsoft Defender for Endpoint integration
Install and configure the Microsoft Defender for Endpoint integration from the ServiceNow Store on your ServiceNow AI Platform instance. Start creating capability profiles using the configurations.
Before you begin
Role required: sn_si.admin
Procedure
Download the Microsoft Defender for Endpoint integration from the ServiceNow Store and install it.
Navigate to Security Operations > Integrations > Integration Configurations.
Search for the Microsoft Defender for Endpoint tile, and click Configure.
On the form, fill in the following fields.
Name Name for the Microsoft Defender for Endpoint instance configuration. Base URL The service base URL for Microsoft Defender for Endpoint Tenant ID The Microsoft Defender for Endpoint Tenant ID. All actions would be performed on this instance. Client ID Client ID for the application that you have registered in the Microsoft Azure portal. Client Secret Client secret for your registered application. Select Submit.
Image omitted: ms\_defender\_tile.png
Install the application and configure a source for the integration
Install the application and configure a source for the integration
Result
The Microsoft Defender for Endpoint configurations list is displayed with your new configuration record. You have completed the configuration for the Microsoft Defender for Endpoint.