Microsoft Defender for Endpoint
Step 1: Grant API Permissions in Azure
1. Register an Application

2. Assign Windows Defender ATP Permissions

Standard Permissions
Host Isolation Permissions (Optional, for host isolation via MS Defender endpoint agents)
3. Grant Admin Consent

Step 2: Configure ThreatDefence SIEM
Need Help?
Last updated

