You do not need to create anything in Azure or Entra. No new enterprise app, no new user, no app registration, and no API key. Leen’s Defender connector is a multi-tenant Microsoft application. It is added to your tenant automatically the moment an administrator grants consent, which is why you will not find it in Enterprise applications until after you complete step 3 below.
Before you begin
1. Confirm you have an eligible admin role. The account that authorizes the connection must be able to grant tenant-wide admin consent. Any of the following roles works:
Cloud Application Administrator and Application Administrator cannot normally grant consent for Microsoft Graph application permissions. That restriction does not apply here, because Microsoft Defender Vulnerability Management uses the WindowsDefenderATP API rather than Microsoft Graph.
2. Confirm your Defender environment is ready.
Microsoft Defender Vulnerability Management must be licensed in the tenant, and devices must be onboarded and reporting in the Microsoft Defender portal. If the Defender portal shows no vulnerability data, this connection will succeed but return nothing.
3. Know which tenant you are connecting.
If your account belongs to more than one Microsoft tenant, have the tenant name or ID ready so you can confirm it on the consent screen.
Connect your tenant
1
Start the connection
In the product you are connecting Microsoft Defender to, open the integrations or connections page and start the Microsoft Defender Vulnerability Management connection.You will be given a Microsoft authorization link, either opened for you automatically or shown for you to open.
2
Sign in as an administrator
Open the authorization link while signed in with an account that has one of the roles listed above.
3
Review and accept the permissions
Microsoft will display a consent screen listing the permissions Leen is requesting, with your organization’s name at the top.Confirm the organization name is the tenant you intend to connect, then select Accept.
You will be redirected to a confirmation page once consent is granted.
You will be redirected to a confirmation page once consent is granted.
4
Confirm the connection
Return to the product you started from. The Microsoft Defender connection will show as connected and the first data sync will begin shortly after.