Microsoft Sentinel
Cloud and workloads

Add Microsoft Sentinel MCP tools to AI agents in Microsoft Copilot Studio

In brief

The article now focuses on adding Sentinel MCP tools to AI agents, clarifies how to use the client secret and Azure values in Copilot Studio OAuth settings, and retitles step 3 around configuring the redirect URI.

What Defender admins need to know

Administrators get clearer instructions for authenticating Copilot Studio and connecting Sentinel MCP tool collections.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

Use aAdd Microsoft Sentinel MCP tooltools to AI agents in Microsoft Copilot Studio (preview)

This article shows you how to add Microsoft Sentinel's Model Context Protocol (MCP) collection of security tools or your own custom tools to your AI agents in Microsoft Copilot Studio .

For information about how to get started with MCP tools, see the following articles:Get started with Microsoft Sentinel MCP server and Create and use custom Microsoft Sentinel MCP tools.

  1. Go back to the Azure portal's Overview page and copy and save the following values to use in the Copilot Studio OAuth settings:

    • Application (client) ID
    • Directory (tenant) ID

    :::image type="content" source="media/sentinel-mcp/custom-studio-redirect.png" alt-text="Screenshot of the URL redirect details in Copilot Studio Add tool setup." lightbox="media/sentinel-mcp/custom-studio-redirect.png":::

Step 3: Configure a redirect URI to authenticate Copilot Studio

Configure a redirect URI so that Copilot Studio can authenticate with your custom MCP tool.