A brief history of Microsoft Sentinel and ServiceNow integration
The Microsoft Sentinel and ServiceNow integration capabilities have come a long way since the first release of our book. The evolution has been as follows:
- Integrate Microsoft Sentinel with ServiceNow IT Service Management (ITSM) using Microsoft Sentinel Logic Apps.
(This method was covered in our original release of this book.)
- Integrate Azure security alert sources (not just Sentinel) with ServiceNow Security Incident Response via the Microsoft Graph Security API.
- Integrate Microsoft Sentinel with ServiceNow Security Incident Response via an API directly to Microsoft Sentinel.
We'll discuss each of these methods in the following sections.
Integrating Microsoft Sentinel with ServiceNow ITSM using Microsoft Sentinel Logic Apps
We will not go into too much detail here since we covered this method in the first edition of this book. While this method achieved the integration step and was...