Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Domain separation in Microsoft Defender for Endpoint integration

Domain separation is supported in Microsoft Defender for Endpoint integration. Domain separation enables you to separate data, processes, and administrative tasks into logical groupings called domains. You can then control several aspects of this separation, including which users can see and access data.

Support level

Support: Basic

Use the following steps for domain separation:

  1. Create a user with the sn_si.admin role in the respective domain.
  2. Perform the Microsoft Defender for Endpoint integration procedures in the appropriate domain.