Event banner
AMA: Microsoft SIEM & XDR: unified security operations
Event Ended
Wednesday, Dec 06, 2023, 09:30 AM PSTEvent details
At Microsoft Ignite we announced that we are bringing our Microsoft Sentinel and Microsoft Defender XDR products together to deliver an optimized and unified security operations experience. We are co...
Heather_Poulsen
Updated Dec 27, 2024
Dec 06, 2023
I have a question regarding the API, currently the the Defender incidents/alerts API can be accessed through the Defender XDR endpoints and through Microsoft Graph API, which one will be recognized and what do you recommend to go for?
The other question is Sentinel API feels more mature, like the filtering of the incidents and everything works so well but Defender is very limited will the Defender or Graph will support all the OData filtering options like the Sentinel API?
GBushey
Dec 07, 2023Former Employee
The API ecosystem is still be worked on. There will be announcements regarding APIs in the future.