---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/pt-BR/security-management

 Release :

    - australia

ft:locale :

    - pt-BR

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Ingest sample Microsoft Graph Security API alerts

# Ingest sample Microsoft Graph Security API alerts {#ariaid-title1}

* Versão de lançamento: Australia
* 
* Atualizado 12 de mar. de 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 min. de leitura

Ingest sample alerts from your Microsoft Azure tenant.

## Antes de Iniciar

Role required: sn_si.admin

## Procedimento

1. You can either pull the 5 most recent sample alerts or provide the unique alert IDs for the specific alerts that you want to use for your mapping experience.  
   From the Ingestion Preference choice list, select one of the following:
   * Retrieve most recent alerts: The 5 most recent alerts are retrieved.
   * Select alerts based on alerts ID: Specify the alert ID for the alerts to be retrieved. You can specify a maximum of 5 alert ids separated by commas.
   {#ms-graph-create-profile-ingestion__ul_mkp_4dq_nkb}
2. Click Fetch Sample Data to pull the latest sample alert data from the Microsoft Azure tenant.  
   The pull for sample alerts may take a few moments.

   The sample alert field
   values are populated on the left side of the form when sample alerts are
   ingested by the profile. These are the alerts that you map to the SIR security incident fields. The alert fields
   and values results are displayed as individual tabs.  

   <br />

{#ms-graph-create-profile-ingestion__steps_pv1_c1j_llb}

## O que Fazer Depois

After you have fetched the sample data, the next step is map the alert fields to the security incident.

