Custom Rules for Defender

%3CLINGO-SUB%20id%3D%22lingo-sub-3291876%22%20slang%3D%22en-US%22%3ECustom%20Rules%20for%20Defender%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-3291876%22%20slang%3D%22en-US%22%3E%3CP%3EHello!%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EDoes%20defender%20have%20an%20option%20to%20deploy%20custom%20queries%20and%20rules%20via%20GitHub%20like%20Sentinel%3F%20Or%20is%20there%20a%20way%20to%20use%20API%20calls%2C%20notebooks%2C%20playbooks%20etc%3F%20Or%20even%20bulk%20upload%20custom%20rules%20through%20a%20file%3F%26nbsp%3B%3CBR%20%2F%3E%3CBR%20%2F%3E%3C%2FP%3E%3CP%3EI%E2%80%99m%20just%20shocked%20that%20I%20can%E2%80%99t%20find%20a%20way%20to%20create%20rules%20and%20queries%20in%20a%20more%20efficient%20way.%20Any%20advise%20would%20be%20really%20appreciated!%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-3291876%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EAutomation%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3EMicrosoft%20Defender%20for%20Office%20365%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E
Occasional Visitor

Hello!

 

Does defender have an option to deploy custom queries and rules via GitHub like Sentinel? Or is there a way to use API calls, notebooks, playbooks etc? Or even bulk upload custom rules through a file? 

I’m just shocked that I can’t find a way to create rules and queries in a more efficient way. Any advise would be really appreciated!

0 Replies