Data retrieval settings for the Microsoft Threat and Vulnerability Management integrations with Security Exposure Management

  • Release version: Yokohama
  • Updated July 29, 2026
  • 1 minute to read
  • Determine the type and scope of data that you want to import with the integrations with data retrieval settings.

    Data retrieval settings help you control the data that you want to import. Set the values of these filters in integration instances. To view the integration instances, navigate to All > Microsoft Defender Integration for USEM > Administration > Integrations.

    From the list, select the link in the Source Instance column. The Integration Instance Parameters tab displays a list of parameters. Alternatively, select the Vulnerability Integrations tab for a schedule, REST details, integration details, data sources, and integration run information.

    Data retrieval settings and filters for the MS TVM integrations in your ServiceNow AI Platform instance

    The following settings are available for the MS TVM integrations in your ServiceNow AI Platform instance. These and other configuration settings are displayed on the Integration Instance page of your ServiceNow AI Platform instance. You may prefer to leave these settings in their default values for the first few integration runs.

    vi_size_limit
    Number of vulnerable item records to include in the result set from the MS TVM Machine Vulnerabilities integration. This setting must be in the int32 format. The default value is 2,000.
    vulnerabilities_size_limit
    Number of vulnerability records to include in the result set from the MS TVM Vulnerability (CVE) integration. This setting must be in the int32 format. The default value is 2,000.
    recommendations_size_limit
    Number of vulnerability records to include in the result set from the MS TVM Recommendations Integration. This setting must be in the int32 format. The default value is 2,000.
    asset_size_limit
    Number of vulnerability records to include in the result set from the MS TVM Machines integration. This setting must be in the int32 format. The default value is 2,000.
    machine_filter
    Filters the machines that are coming from MS TVM. This filter is applied to the MS TVM Machines integration. The default value brings in machines where onBoardingStatus is onBoarded.