---
sourceDocument: Australia Asset Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/it-asset-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Asset Management

ft:clusterId :

    - itam

bundleId :

    - itam

workflow :

    - Technology


---

# Integrating with Microsoft 365

# Integrating with Microsoft 365 {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 7 minutes to read

Integrating the Software Asset Management application with the Microsoft 365 service enables you to track your software subscriptions and software usage to determine license compliance and act on optimization opportunities.  
Important:  
Minimize security risks and protect information by granting access only to the necessary user or API permissions.  
{#integrate-with-microsoft__table_box__entry__6}

| Process | Required? | Required user role in the Microsoft 365 application | Authentication scopes | Purpose | Least privilege? |
|-|-|-|-|-|-|
| Download subscriptions | Mandatory | Application developer | * User.Read.All * LicenseAssignment.Read.All {#integrate-with-microsoft__ul_hhv_ypl_qbc} | Permits the ServiceNow instance to read tenant, user, and license information to synchronize Microsoft 365 subscription data. | The user role and scope are read-only and limited to metadata access. It doesn't allow modifying users, groups, or licenses. |
| Pull user activity | Optional | * Application developer * Power platform administrator {#integrate-with-microsoft__ul_n43_gbk_zbc} | Reports.Read.All | * Pulls usage of Microsoft 365 apps for Enterprise (Microsoft Word, Excel, PowerPoint), and other products such as Exchange Online, Teams, OneDrive, Power BI, SharePoint Online, Viva Engage (previously Yammer). Required for the Software Asset Management Professional application to generate optimization recommendations for low usage. For example, low usage for Microsoft 365 E1, Microsoft 365 E3-\> E1. * Pulls Power BI usage and activity metrics for license optimization. Required for the Software Asset Management Professional application to generate optimization recommendation for low usage. For example, Microsoft 365 E5-\> E3. {#integrate-with-microsoft__ul_bky_s14_g3c} | * The role and scope are read-only and limited to metadata access. It doesn't allow modifying users, groups, or licenses. * For getting Power BI usage, this is the least privilege role. You should consider limiting membership to specific security groups and enabling read-only Power BI admin settings for the service principal. {#integrate-with-microsoft__ul_ud3_t14_g3c} |
| Reclaim subscriptions | Optional | Application developer | * GroupMember.ReadWrite.All * LicenseAssignment.ReadWrite.All {#integrate-with-microsoft__ul_egn_bzw_wcc} | Permits the Software Asset Management Professional application to reclaim inactive licenses by removing Microsoft 365 subscriptions assigned to inactive users. | These permissions only enable modifying license assignments and don't provide tenant-wide admin capabilities. |
| Assign licenses | Optional | Application developer | * GroupMember.ReadWrite.All * LicenseAssignment.Read.All * LicenseAssignment.ReadWrite.All * User.Read.All {#integrate-with-microsoft__ul_mk2_fk1_zhc} | Allows license assignment to users in the Microsoft 365 portal. | These permissions only enable Microsoft 365 license assignment. |
[Table 1. Minimal user permissions]

{#integrate-with-microsoft__box-title}

## Setting up Microsoft 365 integration {#integrate-with-microsoft__section_gdf_jy1_tcc}

Manage Microsoft 365 license compliance and optimization by performing the following steps:

* Prerequisites

  Before you begin with Microsoft 365 integration, confirm that all prerequisites are met.
  1. [Install Software Asset Management Professional for Microsoft](https://servicenow-prod.fluidtopics.net/kubT90suFXDRicFIGG2vjw "The Software Asset Management publisher pack for Microsoft helps you track your license compliance position using Microsoft licensing metrics.")

     Install the Software Asset Management Professional for Microsoft (com.snc.samp.microsoft) plugin to access the Microsoft Publisher pack features in the Software Asset Management application.
  2. [Install ITAM Health Check application](https://servicenow-prod.fluidtopics.net/8~qxVan7oyAzLEImZhGWDQ "Use the Health check dashboard to view the results of the health scan that is performed on the configurations in your Software Asset Management application.")

     Install the ITAM Health Check application to get an overview of your Software Asset Management configurations and receive recommendations for correcting errors.
  3. [Install Software Asset Management - SaaS License Management plugin](https://servicenow-prod.fluidtopics.net/ltQ10fYPUIpL7abgEH0~7A "Request the Software Asset Management - SaaS License Management plugin (sn_sam_saas_int) so that you can create and manage integrations with your SaaS and Single Sign-on (SSO) applications. You can use these integrations to track license usage and to reclaim unused licenses.")

     Install the Software Asset Management - SaaS License Management plugin (com.sn_sam_saas_int) to create and manage integrations with your SaaS and Single Sign-On (SSO) applications. These integrations enable you to track license usage and reclaim unused licenses effectively.
  4. [Install Microsoft Entra ID Spoke](https://www.servicenow.com/docs/access?context=microsoft-azure-ad-spoke&version=australia&pubname=australia-integrate-applications&ft:locale=en-US)

     Install the Microsoft Entra ID spoke (formerly Azure AD spoke) to enable automated integration with the Microsoft 365 Admin Center for license removal and other scenarios. An Integration Hub subscription is required for this spoke. For more information about Integration Hub, see [Integration Hub](https://www.servicenow.com/docs/access?context=integrationhub&version=australia&pubname=australia-integrate-applications&ft:locale=en-US).
  5. [Receive latest updates from Software Asset Management Content Service](https://servicenow-prod.fluidtopics.net/BgAHUWtzbvOa6OvfZAaFFQ "Opt in to the Software Asset Management Content Service to share unnormalized software installation data from your organization with ServiceNow to improve the normalization process.")

     Update your instance with new content twice every week on a scheduled basis through Software Asset Management
     Content Service. The Software Asset Management application provides automated content to simplify the normalization of software installations and subscriptions, offering enriched data such as lifecycle information, downgrade
     rights, and suite definitions. This data is essential for maintaining accurate license compliance and optimization.
  6. [Create a success goal](https://servicenow-prod.fluidtopics.net/tAkkWt5ShVtoAXMm2OP26w "Create success goals to track the success of the Software Asset Management application in your instance.")

     Create a success goal to track the success of Microsoft 365 configuration setup on the Software Asset Management application.
  {#integrate-with-microsoft__ol_qdr_sy1_tcc}
* Software Asset Management configurations

  Configure your Software Asset Management (SAM) application, which includes setting up user accounts, managing licenses, and confirming compliance with Microsoft's software usage policies.
  1. [Register application on Microsoft Entra ID](https://servicenow-prod.fluidtopics.net/oV9DX3ulm7LMla_DCkepzQ "Register an application through the Microsoft Entra ID portal.")

     Register an application on Microsoft Entra ID (formerly Azure Active Directory) that enables the retrieval of all subscriptions provisioned in the Microsoft 365 admin center.
  2. [Configure Power BI usage to get usage information](https://servicenow-prod.fluidtopics.net/SVACIN~SoZmSOSN5C9Kv8g "Grant your application access to Power BI service content and APIs by enabling service principal authentication for Power BI read-only APIs. Power BI service content and APIs help optimize your Microsoft 365 subscriptions, such as by downgrading subscriptions from Office 365 E5 to Office 365 E3.")

     Enable service principal authentication for Power BI read-only APIs to enable your application
     access to Power BI service content and APIs. This access helps optimize your Microsoft 365 subscriptions, such as downgrading subscriptions from Office 365 E5 to Office 365 E3 or removing Power BI low-usage subscriptions​.
  3. [Prevent anonymous user information](https://servicenow-prod.fluidtopics.net/zFQByusMpMsppSlyIhmHXQ "Avoid anonymous user information in Microsoft 365 reports on activity to be imported to ServiceNow.")

     By default, Microsoft hides the user names of subscribers in the Microsoft 365 Admin Center, preventing ServiceNow from accurately tracking Microsoft 365 license usage. To resolve this issue, disable this anonymization feature in the Microsoft 365 Admin Center.
  4. [Set up a Microsoft 365 integration profile](https://servicenow-prod.fluidtopics.net/pq95WJ8~v87QPKm~~I88fw "Create an integration profile to track software subscriptions and optimize stale licenses for the Microsoft 365 service.")

     Create a Microsoft 365 integration profile in the Software Asset Management application to import user subscription data, determine license compliance, and identify optimization opportunities. If you manage multiple tenants, create a separate integration
     profile for each.
  5. [Configure the integration profile to get data for government customers](https://servicenow-prod.fluidtopics.net/Gw3nWzSJNAHFLcFLsEyMUA "Change the endpoints of the REST message and OAuth application on your ServiceNow subscription profile so that you can use your subscriptions.")

     The ServiceNow AI Platform supports Microsoft 365 Government plans, offering all the features of Microsoft 365 services within a government-exclusive cloud. This setup helps organizations comply with the U.S. security and compliance standards.
  6. [Configure the integration profile to get usage for Microsoft 365 Copilot, Visio Online, and Project Online](https://servicenow-prod.fluidtopics.net/e4a5pD915RRyR2vbMOYTbw "Monitor the usage activity data for Microsoft 365 Copilot, Visio Online, and Project Online to identify reclamation candidates based on low usage.")

     Microsoft doesn't provide APIs to get usage directly for Microsoft 365 subscription products, such as Microsoft Visio, Microsoft Project, and Microsoft Copilot. However, you can download activity reports for these products from the Microsoft 365 admin center. Microsoft 365 administrators can download these reports and SAM Admin can attach them unmodified to the integration profile in the Software Asset Management application. The scheduled jobs within ServiceNow will then process these reports and identify reclamation candidates if the usage is low.
  7. [Configure reclamation rules](https://servicenow-prod.fluidtopics.net/QjHAOC5kmvypyG1Pph5iIQ "Use reclamation rules to cancel user subscriptions that have limited to no activity.")

     The Software Asset Management application automatically provides base system reclamation rules when you create an integration profile for Microsoft 365. For more information, see [Reclamation rules for Microsoft 365 integration](https://servicenow-prod.fluidtopics.net/wWqEtGl1QRJK_oUmrsLpvw "Reclamation rules for Microsoft 365 integration sets the minimum usage threshold for a subscription. If a subscription remains inactive for a specified period, Software Asset Management marks the subscription as a potential reclamation candidate.").
  8. [Configure user resolution rules](https://servicenow-prod.fluidtopics.net/nza~CLS_7vBH_HGm1w~qKg "If the User field in the Software Subscription [samp_sw_subscription] table is empty, map the field with an associated user in the User [sys_user] table within ServiceNow AI Platform.")

     Resolve or match the Microsoft 365 admin center user to the ServiceNow user (sys_user) to determine the right license compliance and provide correct optimization recommendations.  
     Important:  
     Remember that sometimes licenses are assigned to non-human users such as email accounts. In these instances, you can skip the user resolution process as it isn't required.
  9. [Run scheduled jobs](https://servicenow-prod.fluidtopics.net/O22_5toZTH5VSlfMfaXTOw "Your Microsoft 365 integration profile is set to fetch subscription and usage information automatically from the Microsoft 365 Admin Center on a schedule. If needed, you can also manually run the following scheduled jobs to get this information. Each job must be complete before starting the next one.")

     The Microsoft 365 integration profile you created automatically gets subscription and usage information from the Microsoft 365 admin center on a scheduled basis. You can now run these jobs on demand and verify they're completed successfully.
  10. [Set up software models and entitlements](https://servicenow-prod.fluidtopics.net/FDmR9qRQSYophTgK5wFwMg "Create software subscriptions for SaaS and SSO applications for users in the Software Asset Workspace.")  
      The Software Asset Management application integrates with the Microsoft 365 admin center to generate software models automatically based on assigned subscriptions. These models include suite components, downgrades, and lifecycle details to confirm compliance and optimize licensing. For these automatically created software models, remember to add your entitlements. If you have previously set up entitlements using Publisher Part Number, the software models from that setup are used in this integration, avoiding the creation of duplicate models.  
      Note:  
      Verify that no software models are created without Discovery Maps (DMAPs) and no entitlements are created without a Publisher Part Number (PPN) for a smoother implementation.
  11. [Set up Add on, From SA, and Step Up entitlements](https://servicenow-prod.fluidtopics.net/gbBWrpkPe_JdQbfJ8aXzEg "You can create entitlements to track and manage the From SA and Add-on licensing terms for your Microsoft 365 subscription software products and services.")

      Associate an Add-on license with a perpetual office legacy license with active Software Assurance. Microsoft 365 offers various subscription types such as Full USL, Add On USL, From SA USL, Step-up license, and reserved licenses. To learn more about these licenses, see [Supported Microsoft 365 license types](https://servicenow-prod.fluidtopics.net/cnyJ5WlyzKWCER02jdCNoA "The Microsoft 365 integration supports various Microsoft 365 license types").
  12. [Set up license reservations](https://servicenow-prod.fluidtopics.net/kYru2NdHfC~h6pSrvzTLTA "You can create reserve entitlements for Microsoft online services to add licenses to your existing Microsoft 365 subscriptions. You can pay for the new licenses during your true-up process.")

      Create reserve entitlements for Microsoft online services to add licenses to your existing Microsoft 365 subscriptions.
  {#integrate-with-microsoft__ol_hfd_kvb_tcc}
* Software Asset Management configurations verification

  Review and validate the Software Asset Management configurations to track and manage Microsoft 365 licenses and usage accurately.
  1. [Verify the complete pull of all subscriptions](https://servicenow-prod.fluidtopics.net/KNqt2AlJuhafVI9Rb4S2fA "Determine the exact software subscription information to be pulled from the Microsoft 365 admin center and verify if complete subscription information is pulled accurately to ServiceNow.")

     Verify with the Microsoft 365 administrator that all subscription records have been successfully pulled.
  2. [Run health check](https://servicenow-prod.fluidtopics.net/Rs~7BhzKITh_1HOxrzKwKg "Run a health check scan on your Software Asset Management configurations and get recommendations on fixing any errors that might exist.")

     Run a health check on the Health check dashboard by selecting Microsoft 365, SaaS, and
     General to verify the Microsoft 365 configurations and review the findings for each suite.
  3. [Verify the pull of all required software usage](https://servicenow-prod.fluidtopics.net/GarLSJy~bZd0gzaePv4SOg "Evaluating software usage activity helps you discover active, inactive, and unassigned subscriptions among all subscriptions found on the Microsoft 365 portal.")

     Verify if the Software Asset Management application has pulled the usage details for your Microsoft 365 subscribed users, which is required to identify the last activity and determine optimization opportunities.
  4. [Create a success goal](https://servicenow-prod.fluidtopics.net/tAkkWt5ShVtoAXMm2OP26w "Create success goals to track the success of the Software Asset Management application in your instance.")

     Create a success goal to manage your Microsoft 365 licenses.
  5. [Add Microsoft 365 and associated products to the published product list](https://servicenow-prod.fluidtopics.net/WZJ~iQHsk6XQw2Fzdkc3yA "Report only on the licensable software products that are part of the current implementation phase of Software Asset Management by publishing those software products. By publishing only a few software products initially, you can assess the initial progress and gradually increase the scope of the implementation.")

     Add Microsoft 365 and associated products to the published product list to improve readability and declutter the Software Asset Workspace. Scale your SAM efforts strategically by evaluating progress based on resource needs, work quality, and configuration management.
  6. [Run reconciliation](https://servicenow-prod.fluidtopics.net/SUHzxdFqMeO8rQemacW3sA "Reconciliation is run as a scheduled job (default is weekly), but you can also run reconciliation manually to reconcile software products in the Software Asset Workspace environment on-demand.")

     Run reconciliation on the Software asset overview page to verify that the licenses are consumed according to the Software Asset Management configurations. You must run reconciliation only for Microsoft as the publisher to verify Microsoft 365 license consumption.
  7. [Check license position report](https://servicenow-prod.fluidtopics.net/B_7dPa_TcVik9K9tYTFDTg "The Software Asset Management License Position report shows compliance details for each software model in a single list.")

     Check your overall compliance positions for Microsoft 365 and associated products in the License Position Report.
  8. [Act on unlicensed subscriptions](https://servicenow-prod.fluidtopics.net/KIskRc6I4R29yhyz4WZ_fg "View license usage information related to Microsoft in the publisher overview for Microsoft in the Software Asset Workspace.")

     Identify and address the unlicensed Microsoft 365 subscriptions.
  9. [Act on optimization recommendations](https://servicenow-prod.fluidtopics.net/AOWR6KO4MQpJvT16occJLg "View licensing optimizations for Microsoft by selecting Microsoft from the Publisher drop-down list.")

     Software Asset Management supports various optimization use cases, which you can view on the Software asset analytics page.
  {#integrate-with-microsoft__ol_vzx_rxb_tcc}
{#integrate-with-microsoft__ul_ebt_ly1_tcc}
**Related concepts**   

* [Microsoft 365 integration](https://servicenow-prod.fluidtopics.net/uS3VkFj2tkyZNaiLDoXeqg "Create an integration with Microsoft 365 to download subscription information that is compared with software installations for compliance.")
* [Automated license removal for Microsoft 365](https://servicenow-prod.fluidtopics.net/UnDafNOQEMhXoX4XHKHolw "Software Asset Management optimizes Microsoft 365 subscription usage by identifying low usage and overlapping candidates, and then automatically removing the licenses from the Microsoft 365 admin center. This proactive management helps you streamline costs and enhance the efficiency of low usage and overlapping licenses.")
* [Software Asset Management software suites](https://servicenow-prod.fluidtopics.net/QXVjsAGcwewUdJ32_0Q78A "Software Suites is a way for a software publisher to group related applications as a set.")
* [Evaluating software usage activity for Microsoft 365 subscriptions](https://servicenow-prod.fluidtopics.net/GarLSJy~bZd0gzaePv4SOg "Evaluating software usage activity helps you discover active, inactive, and unassigned subscriptions among all subscriptions found on the Microsoft 365 portal.")

