↳ GitHub sourceConnector

Microsoft Entra ID Protection

Description

Microsoft Entra ID Protection provides a consolidated view at risk users, risk events and vulnerabilities, with the ability to remediate risk immediately, and set policies to auto-remediate future events. The service is built on Microsoft’s experience protecting consumer identities and gains tremendous accuracy from the signal from over 13 billion logins a day. Integrate Microsoft Microsoft Entra ID Protection alerts with Microsoft Sentinel to view dashboards, create custom alerts, and improve investigation. For more information, see the [Microsoft Sentinel documentation ](https://go.microsoft.com/fwlink/p/?linkid=2220065&wt.mc_id=sentinel_dataconnectordocs_content_cnl_csasci). [Get Microsoft Entra ID Premium P1/P2 ](https://aka.ms/asi-ipcconnectorgetlink)
Declared status
2
Declared author / publisher
Microsoft

Declared sources

Metadata from the source file. No dependencies inferred from KQL.

Data types

Declared permissions

read and write permissions.
Workspace
Workspace

Connector instructions

Content published in the repository. Refer to the original file for all parameters.

Microsoft Entra ID Protection alerts to Microsoft Sentinel
Connect Microsoft Entra ID Protection to Microsoft Sentinel. > The alerts are sent to this Microsoft Sentinel workspace.
Microsoft Entra ID Protection

Related content

Links established from declared identifiers and solution manifests.

Source provenance

GitHub

Displayed values come from files in Azure/Azure-Sentinel. They describe the published template, not your workspace configuration.

Source identifier
AzureActiveDirectoryIdentityProtection
Additional source files 2Solutions/Microsoft Entra ID Protection/Data Connectors/template_AzureActiveDirectoryIdentityProtection.JSONsource ↗Solutions/Microsoft Entra ID Protection/Data/Solution_AzureADIdentityProtection.jsonsolution-membership ↗
GSTEP / CATALOG TRACKING

Added to catalog : 16 Sept 2026 · 05:49 UTC
Last change observed : 16 Sept 2026 · 05:49 UTC

GSTEP sync dates, separate from the source content’s publication dates.