---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Domain separation

# Domain separation and Microsoft Graph Security API alert ingestion {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Domain separation is supported for this application. The Microsoft Graph Security API integration ingests alerts from Microsoft Graph security
providers and automatically creates security incidents. Domain separation enables you to separate data, processes, and administrative tasks into logical groupings called domains. You can control several aspects of this separation, including which users can see and access data.

## Support level: Basic {#ms-graph-domain-sep__id_yqp_wxl_h4b}

{#ms-graph-domain-sep__domain-sep-supported}  
* Business logic: Ensure that data goes into the proper domain for the application's service provider use cases.
* The application supports domain separation at run time. The domain separation includes separation from the user interface, cache keys, reporting, rollups, and aggregations.
* The owner of the instance must set up the application to function across multiple tenants.
{#ms-graph-domain-sep__ul_yhr_g2j_xkb}

Sample use case: When a service provider (SP) uses chat to respond to a tenant-customer's
message, the customer must be able to see the SP's response.{#ms-graph-domain-sep__p_lsc_nfg_h1c}

For more information on support levels, see [Application support for domain
separation](https://www.servicenow.com/docs/access?context=domain-separated-apps&version=australia&pubname=australia-platform-security&ft:locale=en-US).{#ms-graph-domain-sep__p_msc_nfg_h1c}

## How domain separation works in the Microsoft Graph Security API {#ms-graph-domain-sep__section_wk3_xxl_h4b}

To achieve domain separation, replicate the Microsoft Graph Security API
Profile Process and SIR Process Alert Updates scheduled jobs and
change the Run as users. By default, the system users execute these
scheduled jobs. Change the Run as to a user with the sn_si.admin role in
the respective domain and run the scheduled job.
**Related topics**   

* [Domain separation for service providers](https://www.servicenow.com/docs/access?context=domain-sep-landing-page&version=australia&pubname=australia-platform-security&ft:locale=en-US)

