Skip to main content
Loading

Microsoft Defender for Endpoint

This page explains how to make data from the Microsoft Defender for Endpoint integration appear in the following places within Elastic Security:

  • Findings page: Data appears on the Vulnerabilities tab.
  • Alert and Entity details flyouts: Data appears in the Insights section of the Alert and Entity details flyouts.

In order for Microsoft Defender for Endpoint data to appear in these workflows: