Microsoft Azure Compute
The Azure Compute connector integrates with Microsoft Azure and synchronizes virtual machine inventory using the Azure Resource Manager APIs (via the Azure SDK for Java). For each configured subscription it lists all virtual machines, enriches each VM with instance-view status, agent details, network-interface IP configuration, and resource metadata, and maps the result to a Host connector object.
Microsoft Azure DevOps
The Azure DevOps connector integrates with Azure DevOps Services and Team Foundation Server using the Work Item Tracking (WIT) REST API (API version `7.0`). It discovers the work-item types defined in the configured project, builds a dynamic schema from each type's field definitions, and synchronizes work items as connector objects. The connector also supports creating, updating, and deleting work items.
Microsoft Defender for Cloud
The Microsoft Defender for Cloud connector integrates with Microsoft Azure to synchronize cloud security posture and workload-protection data. It queries **Azure Resource Graph (ARG)** and the **Azure Resource Manager (ARM)** REST APIs to pull security alerts, security assessments (recommendations) and their metadata, vulnerability sub-assessments, and the cloud assets they apply to (resources, hosts, subscriptions, and resource groups). For identity-targeting findings it optionally enriches records with account details from **Microsoft Graph**.
Microsoft Defender for Endpoint
The Microsoft Defender for Endpoint connector integrates with the [Microsoft Defender for Endpoint (ATP) REST API](https://learn.microsoft.com/en-us/defender-endpoint/api/exposed-apis-list) to synchronize endpoint inventory and threat-and-vulnerability-management (TVM) data into the Brinqa platform. It retrieves onboarded machines, installed software, and software vulnerabilities, and maps them to hosts, packages, installed packages, vulnerability findings, and vulnerability definitions.
Microsoft Defender for EASM
The Microsoft Defender External Attack Surface Management Connector enables integration with Microsoft Defender External Attack Surface Management (EASM). It allows your application to discover, monitor, and manage external assets, identify vulnerabilities, and receive alerts about potential threats to your organization's attack surface.
Microsoft Endpoint Configuration Management
The Microsoft Endpoint Configuration Manager (MECM, formerly SCCM) connector integrates directly with the MECM site database on **Microsoft SQL Server** to synchronize managed-device inventory and software data into the Brinqa platform. It runs read-only SQL queries against the standard MECM reporting views (`v_R_System`, `v_GS_OPERATING_SYSTEM`, `v_Add_Remove_Programs`, etc.) and maps the results to hosts, software packages, and software installations.
Microsoft Intune
The Microsoft Intune connector integrates with the Microsoft Intune device management platform via the Microsoft Graph API. It synchronizes managed device inventory data, distinguishing between traditional hosts (desktops, laptops, servers) and mobile devices (phones, tablets) based on IMEI presence or operating system type (iOS, Android).
Microsoft Security Response Center
The Microsoft Security Response Center (MSRC) connector integrates with the [MSRC Common Vulnerability Reporting Framework (CVRF) API](https://api.msrc.microsoft.com/) to synchronize Microsoft security update guide data into the Brinqa platform. Each monthly security-update release ("bulletin") is expanded into the products it affects and the individual security updates (vulnerabilities) it addresses.







