What’s Included
- Defender XDR incident ingestion and correlation
- Entity enrichment (users, devices, IPs, files, URLs)
- Full Gamebook response actions (isolate, disable, quarantine, etc.)
- Multi-tenant management across all Defender tenants
- Endpoint visibility via the Endpoints page