---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Configure Defender for Cloud integrations for Security Exposure Management

# Install and configure Microsoft Defender for Cloud integrations for Security Exposure Management {#ariaid-title1}

* Release version: Australia
* 
* Updated July 29, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 minutes to read

After you install and configure the Microsoft Defender Integration for Security Exposure Management, configure the Microsoft Defender for Cloud integrations.

## Before you begin

Create a new app registration on Azure Active Directory for the Microsoft Defender for Cloud Integration. For information on registering a new application on Azure Active Directory, see the [Microsoft product documentation](https://learn.microsoft.com/en-us/docs/) site. For information on Azure roles, see [Azure roles](https://learn.microsoft.com/en-us/azure/role-based-access-control/rbac-and-directory-admin-roles).  
Note:  
The integrations support commercial cloud environments by default. If you require non-commercial support (GCC High, DoD, etc.) see the [Non-commercial configuration for Microsoft Defender Integration for Security Exposure Management](https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB3141167) Knowledge Base article \[KB3141167\] for more information.  
* The Microsoft Defender Integration for Security Exposure Management application bundles two independent integrations, each with its own configuration steps.
* See [Install and configure the Microsoft TVM integrations for Security Exposure Management](https://servicenow-prod.fluidtopics.net/_4JEVEZ2UqTxWFrzov1j_g "Install, activate, and configure the Microsoft TVM integrations for the Microsoft Defender Integration for Security Exposure Management with the Setup Assistant.") to configure the Microsoft Threat and Vulnerability (MS TVM) Integrations with the Setup Assistant.
* See the following installation steps if you have not already installed the Microsoft Defender Integration for Security Exposure Management application. If you have installed the application, proceed to step 4 for configuration.
{#cc_asc_install_configure__ul_ejf_b2j_zjc}

Roles required:

* admin for initial assignment of roles activating the application.
* sn_vul.vulnerability_admin
{#cc_asc_install_configure__ul_njb_jcb_zjc}

## Procedure

1. Navigate to AllSystem DefinitionPlugins.
2. In the search bar, enter <kbd class="ph userinput">Microsoft Defender Integration for Security Exposure Management</kbd>.
3. Select Install.  
   Any dependencies that will be installed are displayed.
4. Navigate to AllMicrosoft Defender Integration for USEMAdministrationMicrosoft Defender for Cloud Configuration.
5. In the form, fill in the fields.  
   {#cc_asc_install_configure__table_b5w_jy4_bkc__entry__2}

   | Field | Description |
   |-|-|
   | API URL | Resource URL of the instance. * [https://management.azure.com](https://management.azure.com/) (Azure public cloud) * <http://management.usgovcloudapi.net> (US Government GCC High/DoD) {#cc_asc_install_configure__ul_ehx_cwg_yjc} |
   | Tenant ID | Tenant identity of your organization. |
   | Integration instance | Default instance. You can also create an instance for bringing the data from multiple Microsoft Defender tenants or subscriptions. |
   | Client ID | Client identity that is generated after the Microsoft Defender for Cloud Integration application is registered. |
   | Client secret | Client secret that is generated after the Microsoft Defender for Cloud Integration application is registered. |
   | Import Findings from | Resources and assessments that correspond to the selected management group IDs and subscription IDs to be retrieved. |
   | Management Group | Resources and assessments that correspond to the management Group IDs to be retrieved. Note: This field appears only when you select Specific Management Groups from the Import Findings from field. |
   | Subscription ID | Identification numbers of the subscriptions for which the resources and assessments are to be retrieved. Note: This field appears only when you select Specific Subscriptions from the Import Findings from field. |
   | Validation status | Whether the credentials and subscription ID that are provided are valid. |
   [Table 1. Microsoft Defender for Cloud Configuration form]

   {#cc_asc_install_configure__table_b5w_jy4_bkc}
6. Select Save and test.

*[\>]: and then


