Skip to content

Commit a82e420

Browse files
committed
Merge branch 'main' into pr/2987
2 parents 9336248 + bae1dd5 commit a82e420

File tree

12 files changed

+165
-7
lines changed

12 files changed

+165
-7
lines changed

defender-endpoint/api/management-apis.md

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -33,7 +33,7 @@ Defender for Endpoint supports a wide variety of deployment, configuration, and
3333

3434
## Endpoint onboarding and portal access
3535

36-
Device onboarding is fully integrated into Microsoft Intune and Microsoft Configuration Manager for client devices. For servers, you can choose from several options, such as Defender for Endpoint Server, Defender for Servers (as part of the Defender for Cloud offering), or Defender for Business servers (for small and medium-sized businesses).
36+
Device onboarding is fully integrated into Microsoft Intune and Microsoft Configuration Manager for client devices. You can onboard both client and server devices using the Microsoft Defender portal. Or, for servers, you can use Defender for Cloud, which integrates with Defender for Endpoint and Defender for Business. (Server licenses are required; for more information, see [Onboard servers to Defender for Endpoint](/defender-endpoint/onboard-server) and [Onboard devices to Defender for Business](/defender-business/mdb-onboard-devices).)
3737

3838
The Microsoft Defender portal provides your security team with a robust, end-to-end experience for configuration, deployment, and monitoring. In addition, Microsoft Defender for Endpoint supports Group Policy and other non-Microosft tools used for managing devices.
3939

@@ -47,7 +47,7 @@ Defender for Endpoint provides fine-grained control over what users with access
4747

4848
Defender for Endpoint is built on top of an integration-ready platform.
4949

50-
Defender for Endpoint exposes much of its data and actions through a set of programmatic APIs. Those APIs enable you to automate workflows and innovate based on Defender for Endpoint capabilities. You can also the Defender for Endpoint APIs with Defender for Business, for the capabilities that are supported in Defender for Business.
50+
Defender for Endpoint exposes much of its data and actions through a set of programmatic APIs. Those APIs enable you to automate workflows and innovate based on Defender for Endpoint capabilities. You can also use the Defender for Endpoint APIs with Defender for Business for the capabilities that are supported in Defender for Business.
5151

5252
:::image type="content" source="../media/mdatp-apis.png" alt-text="The available API and integration in Microsoft Defender for Endpoint" lightbox="../media/mdatp-apis.png":::
5353

@@ -73,7 +73,7 @@ The **Response API** exposes the ability to take actions in the service and on d
7373

7474
Defender for Endpoint raw data streaming API provides the ability for customers to ship real-time events and alerts from their instances as they occur within a single data stream, providing a low latency, high throughput delivery mechanism.
7575

76-
The Defender for Endpoint event information is pushed directly to Azure storage for long-term data retention, or to Azure Event Hubs for consumption by visualization services or additional data processing engines.
76+
The Defender for Endpoint event information is pushed directly to Azure storage for long-term data retention, or to Azure Event Hubs for consumption by visualization services or other data processing engines.
7777

7878
For more information, see [Raw data streaming API](raw-data-export.md).
7979

@@ -82,9 +82,9 @@ For more information, see [Microsoft Defender XDR Streaming API](/defender-xdr/s
8282

8383
## SIEM API
8484

85-
When you enable security information and event management (SIEM) integration, it allows you to pull detections from Microsoft Defender XDR using your SIEM solution or by connecting directly to the detections REST API. This activates the SIEM connector access details section with pre-populated values and an application is created under your Microsoft Entra tenant.
85+
When you enable security information and event management (SIEM) integration, you can pull detections from Microsoft Defender XDR using your SIEM solution or by connecting directly to the detections REST API. This activates the SIEM connector access details section with pre-populated values and an application is created under your Microsoft Entra tenant.
8686

87-
## Related topics
87+
## Related articles
8888

8989
- [Access the Microsoft Defender for Endpoint APIs](apis-intro.md)
9090
- [Supported APIs](exposed-apis-list.md)

unified-secops-platform/TOC.yml

Lines changed: 5 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -65,12 +65,15 @@
6565
href: /azure/sentinel/sentinel-security-copilot?toc=/unified-secops-platform/toc.json&bc=/unified-secops-platform/breadcrumb/toc.json
6666
- name: Investigate with Microsoft Copilot in Microsoft Defender
6767
href: /defender-xdr/security-copilot-in-microsoft-365-defender?toc=/unified-secops-platform/toc.json&bc=/unified-secops-platform/breadcrumb/toc.json
68-
- name: Respond to threats automatically
68+
- name: Respond to threats
6969
items:
70+
- name: Overview
71+
href: respond-threats-overview.md
72+
displayName: Respond to threats
7073
- name: Automatic attack disruption
7174
href: /defender-xdr/automatic-attack-disruption?toc=/unified-secops-platform/toc.json&bc=/unified-secops-platform/breadcrumb/toc.json
7275
- name: Automation in Microsoft Sentinel (SOAR)
73-
href: /azure/sentinel/automation?toc=/unified-secops-platform/toc.json&bc=/unified-secops-platform/breadcrumb/toc.json
76+
href: /azure/sentinel/automation/automation?toc=/unified-secops-platform/toc.json&bc=/unified-secops-platform/breadcrumb/toc.json
7477
- name: Automated investigation and response in Microsoft Defender XDR
7578
href: /defender-xdr/m365d-autoir?toc=/unified-secops-platform/toc.json&bc=/unified-secops-platform/breadcrumb/toc.json
7679
- name: Optimize your security operations
61.5 KB
Loading
317 KB
Loading
94 KB
Loading
40.5 KB
Loading
89.3 KB
Loading
148 KB
Loading
113 KB
Loading
390 KB
Loading

0 commit comments

Comments
 (0)