Extending MDI Capabilities Through APIs
In this chapter, we will explore how to extend the capabilities of Microsoft Defender for Identity (MDI) using the Microsoft Graph API. At the time of writing this book, in mid-2024, there is limited API support for MDI. We will focus on key APIs that allow you to monitor and manage alerts, incidents, and health issues within your MDI environment. By the end of this chapter, you will have a comprehensive understanding of how to use these APIs to enhance your security operations through automation and integration.
In this chapter, we’re going to cover the following main topics:
- Introduction to the MDI API
- Building custom integrations and automations
Let’s get started!
News from Microsoft Ignite 2024: Sensor Management API for Automated Operations
To further enhance operational efficiency, Microsoft has launched a Sensor Management API. This API allows for the automation of tasks such as deployment, configuration...