Microsoft Azure Sentinel Incident Ingestion Integration For Security Operations
Create Security Incidents automatically from Microsoft Azure Sentinel API incidents.
Install Trend
View Install Data
| Date | Install Count | Change |
|---|---|---|
| 2026-09-09 | 0 | - |
| 134 days of no change | ||
| 2026-04-27 | 213 | -213 |
| 151 days of no change | ||
| 2025-11-26 | 212 | +1 |
| 2025-11-25 | 211 | +1 |
| 17 days of no change | ||
| 2025-11-07 | 210 | +1 |
| 3 days of no change | ||
| 2025-11-03 | 209 | +1 |
| 3 days of no change | ||
| 2025-10-30 | 208 | +1 |
| 6 days of no change | ||
| 2025-10-23 | 207 | +1 |
| 2025-10-22 | 206 | +1 |
| 8 days of no change | ||
| 2025-10-13 | 205 | +1 |
| 7 days of no change | ||
| 2025-10-05 | 204 | +1 |
| 16 days of no change | ||
| 2025-09-18 | 203 | +1 |
| 2025-09-17 | 201 | +2 |
| 7 days of no change | ||
| 2025-09-09 | 200 | +1 |
| 1 days of no change | ||
| 2025-09-07 | 199 | +1 |
| 2 days of no change | ||
| 2025-09-04 | 198 | +1 |
| 1 days of no change | ||
| 2025-09-02 | 197 | +1 |
| 1 days of no change | ||
| 2025-08-31 | 196 | +1 |
| 14 days of no change | ||
| 2025-08-16 | 195 | +1 |
| 1 days of no change | ||
| 2025-08-14 | 194 | +1 |
| 1 days of no change | ||
| 2025-08-12 | 192 | +2 |
| 7 days of no change | ||
| 2025-08-04 | 191 | +1 |
| 13 days of no change | ||
| 2025-07-21 | 190 | +1 |
| 2 days of no change | ||
| 2025-07-18 | 189 | +1 |
| 14 days of no change | ||
| 2025-07-03 | 188 | +1 |
| 2025-07-02 | 187 | +1 |
| 21 days of no change | ||
| 2025-06-10 | 186 | +1 |
| 18 days of no change | ||
| 2025-05-22 | 185 | +1 |
| 7 days of no change | ||
| 2025-05-14 | 184 | +1 |
| 3 days of no change | ||
| 2025-05-10 | 183 | +1 |
| 9 days of no change | ||
| 2025-04-30 | 182 | +1 |
| 1 days of no change | ||
| 2025-04-28 | 181 | +1 |
| 2 days of no change | ||
| 2025-04-25 | 179 | +2 |
| 2025-04-24 | 178 | +1 |
| 8 days of no change | ||
| 2025-04-15 | 177 | +1 |
| 20 days of no change | ||
| 2025-03-25 | 175 | +2 |
| 6 days of no change | ||
| 2025-03-18 | 174 | +1 |
| 5 days of no change | ||
| 2025-03-12 | 173 | +1 |
| 5 days of no change | ||
| 2025-03-06 | 172 | +1 |
| 2025-03-05 | 171 | +1 |
| 5 days of no change | ||
| 2025-02-27 | 170 | +1 |
| 2 days of no change | ||
| 2025-02-24 | 169 | +1 |
| 12 days of no change | ||
| 2025-02-11 | 168 | +1 |
| 2025-02-10 | 167 | +1 |
| 3 days of no change | ||
| 2025-02-06 | 166 | +1 |
| 3 days of no change | ||
| 2025-02-02 | 165 | +1 |
| 5 days of no change | ||
| 2025-01-27 | 164 | +1 |
| 9 days of no change | ||
| 2025-01-17 | 163 | +1 |
| 6 days of no change | ||
| 2025-01-10 | 162 | +1 |
| 7 days of no change | ||
| 2025-01-02 | 161 | +1 |
| 63 days of no change | ||
| 2024-10-30 | 148 | +13 |
About
The Microsoft Azure Sentinel Incident Ingestion integration allows you to automatically retrieve incidents from Azure Sentinel, convert them into security incidents, and enable automated response actions.
Key Features
This integration includes the following key features:
- Discover Microsoft Azure Sentinel incidents that are candidates for security incidents and automate the creation of security incidents.
- Mapping Microsoft Azure Sentinel incident and entity fields to SIR security incident fields.
- Filtering of Microsoft Azure Sentinel incidents.
- Aggregation of similar incidents to existing open security incidents so that you don't have to create duplicate security incidents.
- Automatic Microsoft Azure Sentinel incident status update for SIR security incident creation and closure.
- Scheduled ingestion of incidents that create security incidents periodically.
- Synchronization of Microsoft Azure Sentinel incident comments with SIR worknotes.