Automated Response for Microsoft Security Rules | Azure Sentinel

Prasenna Kannan 436 Reputation points


I have created a playbook to orchestrate automated response which will trigger an email with the alert details.

I'm able to associate the playbook with scheduled rule analytic rule, however I'm unable to associated with Microsoft Security analytic rule.

Based on the initial investigation, I'm informed that automated response for Microsoft Security rule is currently unavailable. Only for scheduled rule it is available.

Reference link below :

Can someone confirm?


Microsoft Sentinel
Microsoft Sentinel
A scalable, cloud-native solution for security information event management and security orchestration automated response. Previously known as Azure Sentinel.
796 questions
{count} votes

1 answer

Sort by: Most helpful
  1. John Nephin 1 Reputation point

    Any update to this? I also need this feature.

    0 comments No comments