UiPath Documentation
activities
latest
false

Integration Service activities

Last updated May 22, 2026

Microsoft Azure Sentinel how-to guides

This page includes guides and resources that can help you learn how to create automations using Microsoft Azure Sentinel activities.

Workflow examples

End-to-end automation solutions demonstrating how Microsoft Azure Sentinel activities are used to orchestrate full incident lifecycle management.

Workflow exampleDescriptionActivities
SOAR – File Threat Detection and ResponseEnd-to-end SOAR solution that scans supplier files from email, OneDrive, and SharePoint using Azure Defender and AI Agent, then automatically quarantines threats and triggers full security response.Create New Incident

Studio Web templates

Reusable Studio Web templates that show how to use Microsoft Azure Sentinel activities as the response layer in file-based threat analysis workflows. Each template scans a file from a different source and then leverages Sentinel for investigation and incident management.

TemplateFile sourceDescriptionActivities
SOAR Threat Analysis – Scan Local FilesLocal file systemUpload a local file to Azure Blob Storage, trigger malware scanning with Microsoft Defender for Cloud, enrich findings with Microsoft Sentinel Threat Intelligence, and support incident response in Microsoft Azure Sentinel.Create New Incident
SOAR Threat Analysis – Scan Files from Google DriveGoogle DriveRetrieve files from Google Drive, upload them to Azure Blob Storage, trigger malware scanning with Microsoft Defender for Cloud, enrich findings with Microsoft Sentinel Threat Intelligence, and support incident response in Microsoft Azure Sentinel.Create New Incident
SOAR Threat Analysis – Scan Files from Gmail AttachmentsGmailDownload Gmail attachments, upload them to Azure Blob Storage, trigger malware scanning with Microsoft Defender for Cloud, enrich findings with Microsoft Sentinel Threat Intelligence, and support incident response in Microsoft Azure Sentinel.Create New Incident
SOAR Threat Analysis – Scan Files from OneDriveMicrosoft OneDriveRetrieve files from OneDrive, upload them to Azure Blob Storage, trigger malware scanning with Microsoft Defender for Cloud, enrich findings with Microsoft Sentinel Threat Intelligence, and support incident response in Microsoft Azure Sentinel.Create New Incident
SOAR Threat Analysis – Scan Files from Outlook AttachmentsMicrosoft OutlookDownload Outlook email attachments, upload them to Azure Blob Storage, trigger malware scanning with Microsoft Defender for Cloud, enrich findings with Microsoft Sentinel Threat Intelligence, and support incident response in Microsoft Azure Sentinel.Create New Incident
  • Workflow examples
  • Studio Web templates

Was this page helpful?

Connect

Need help? Support

Want to learn? UiPath Academy

Have questions? UiPath Forum

Stay updated