---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Install and configure

# Install the application and configure Microsoft Defender for Endpoint integration {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Install and configure the Microsoft Defender for Endpoint integration from
the ServiceNow Store on your ServiceNow AI Platform instance. Start creating
capability profiles using the configurations.

## Before you begin

Role required: sn_si.admin

## Procedure

1. Download the Microsoft Defender for Endpoint integration from the ServiceNow Store and install it.
2. Navigate to Security OperationsIntegrationsIntegration Configurations.
3. Search for the Microsoft Defender for Endpoint tile, and click Configure.
4. On the form, fill in the following fields.  
   {#install-microsoft-defender-source__table_d1l_21c_3sb__entry__2}

   |   |   |
   |-|-|
   | Name | Name for the Microsoft Defender for Endpoint instance configuration. |
   | Base URL | The service base URL for Microsoft Defender for Endpoint |
   | Tenant ID | The Microsoft Defender for Endpoint Tenant ID. All actions would be performed on this instance. |
   | Client ID | Client ID for the application that you have registered in the Microsoft Azure portal. |
   | Client Secret | Client secret for your registered application. |
   [Table 1. Configure Microsoft Defender for Endpoint]

   {#install-microsoft-defender-source__table_d1l_21c_3sb}
5. Select Submit.  
   Figure 1. Install and configure the application

## Result

The Microsoft Defender for Endpoint configurations list is displayed with your new configuration record. You have completed the configuration for the Microsoft Defender for Endpoint.

*[\>]: and then


