Cannot view Sentinel alert for some incidents but the alert can be found in Defender for Endpoint portal using Graph
Spyros Ermogenous
0
Reputation points
I have enabled automatic incident creation for Defender for Endpoint in Sentinel but when I try to view some alerts associated with the created incidents, nothing is displayed. Despite this, I can locate the relevant alert in the Security (Defender for Endpoint) portal through Graph API, even though it has a different AlertID.
How can I establish a connection between these two alerts?