Microsoft Graph Identity and Access (v1.4.11)
Use this pack to manage roles and members in Microsoft.
- Author
- Cortex XSOAR
- Support
- xsoar
- URL
- https://www.paloaltonetworks.com/cortex
- Categories
- Identity and Access Management
Incident fields (5)
- Microsoft Graph Identity and Access Activity
- Microsoft Graph Identity and Access Alert Type
- Microsoft Graph Identity and Access Detected Date Time
- Microsoft Graph Identity and Access Detection Timing Type
- Microsoft Graph Identity and Access Token Issuer Type
Integrations (1)
- Entra ID Identity And Access
Layouts (1)
- Microsoft Graph Identity and Access Layout
README
Use the Microsoft Graph Identity and Access pack to fetch alerts from Microsoft Entra ID Protection, manage administrator (directory roles), manage conditional access policies, manage IP named locations, discover information about users’ group and role memberships, and retrieve information about user risks.
What does this pack do?
The Entra ID Identity And Access integration enables you to:
- Create, update, or delete a Conditional Access policy.
- List the roles in the Entra ID tenant.
- Get all members in a role ID.
- Add a user to a role.
- Remove a user from a role.
- Create an ip named location.
- Update an ip named location.
- Remove an ip named location.
- Get an ip named location.
- List an ip named location.
- Retrieve the risky users in Entra ID.
- Retrieve the risky users history in Entra ID.
- Retrieve a Microsoft Entra ID sign-in event.