---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Set up account

# Set up your Microsoft Azure account {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 minutes to read

Complete the following setup tasks in your Microsoft Azure portal prior to
installing the ServiceNow application
for this integration. This account permits access to the Microsoft Exchange Online tenant for
email message details.

## Before you begin

Role required: Microsoft Azure portal administrator

This account is required to access the Microsoft Exchange Online tenant
to gather additional email message details and to delete email messages. This
account is set up in the Microsoft Azure
portal.

The images in the following tasks are privileged and proprietary and
are used with permission from Microsoft. This content is
subject to updates by Microsoft. To verify that you have access to the most current content, see the [Microsoft
doc](https://docs.microsoft.com) website.

In the following images, ServiceNow Inc. is displayed for the account name in the examples for the
Azure portal. In your Azure portal account, the company name for your account in the
Azure portal is displayed.

## Procedure

If you have not created an application ID for OAUTH authentication in the Microsoft Azure portal, follow these steps.

1. Log in to the Microsoft Azure portal using your Azure portal administrator credentials.
2. Enter App registrations in the Search box.
3. Select New registration.
4. Fill in the Register an application form that is displayed.  
   {#ms-azure-account__table_qtm_nnf_mgb__entry__2}

   | Field | Description |
   |-|-|
   | Name | Name for the application. In this example, <kbd class="ph userinput">ServiceNow Exchange Online Integration</kbd> is entered. |
   | Supported account types | For this account, in Supported account types, select Accounts in this organizational directory only (your organization name). This domain is used for the email searches. |
   | Redirect URL (optional) | If you enter a value for this field, it is not used by the integration. |
   [ ]

   {#ms-azure-account__table_qtm_nnf_mgb}
5. Select Register.  
   An Application ID is created. This ID is similar to a user name. You enter this value on the configuration page in the OAUTH Application ID field during the configuration step in your ServiceNow AI Platform instance that is described in [Configure the Microsoft Exchange Online integration](https://servicenow-prod.fluidtopics.net/Lq95wViOo_H3WCH_nIKDwA "After you’ve installed the application from the ServiceNow Store, configure it to connect to your ServiceNow AI Platform instance. This activation activates the search and delete workflows.").
6. Under Manage select, Manifest.
7. Find the requiredResourceAccess entry (on or about line 52).
8. Modify resourceAppId, resourceAccess id, and resourceAccess type values with the following code snippet:  
9. Select Save.
10. Under Manage select, API permissions.
11. Select Add a Permission.
12. In the Request API permissions pane that is displayed, select Microsoft Graph.
13. In the Request API permissions pane that is displayed, select Application permissions.
14. In the Select Permissions field that is displayed, enter Threat and select the ThreatHunting.Read.All check box.
15. Select Grant Admin Consent for \<Organization\>.
16. Select Yes.  
    The Status value should now be Granted for \<Organization\>.
{#ms-azure-account__substeps_hxv_p2r_lgb}

## What to do next

You are ready to set up your ServiceNow AI Platform® instance for the
integration.
**Previous topic:** [Microsoft Exchange Online integration](https://servicenow-prod.fluidtopics.net/mXssPEzyY3VrIj6GuBzw1w "For the Microsoft Exchange Online integration application by ServiceNow, the ServiceNow AI Platform Security Incident Response (SIR) product is integrated with the Microsoft Exchange Online service, one of the cloud-based services in the Microsoft Office 365 suite of products. Your Security Operation Center (SOC) analyst can search your corporate email environment for security-related threats and remove and remediate phishing emails with email search and delete capabilities.")  
**Next topic:** [Install Microsoft Exchange Online application](https://servicenow-prod.fluidtopics.net/s6jKx0Dt64gK5dcCr6rLvQ "Before you run the integration on your instance, install the Microsoft Exchange Online application for the integration from the ServiceNow Store.")

