Skip to main content
Create or update an incident. Note, If you receive the error message A new version of Microsoft XDR incident is available. Fetch the new version and try again, first run the Get Incident action using the same incident ID, then retry this action.
External DocumentationTo learn more, visit the Microsoft Sentinel documentation.

Basic Parameters

Advanced Parameters

Example Output

Workflow Library Example

Create or Update Incident with Microsoft Sentinel and Send Results Via Email
Workflow LibraryPreview this Workflow on desktop