Skip to main content

Find your way around the platform

A practical map of the platform: where to start, which area owns each task, and where to find setup and troubleshooting instructions.

Written for whoever runs IT8 min readUpdated

Use Find a page in the sidebar to search by feature name. Identity settings are grouped into People and profiles, Directory sync, Applications and APIs, Sign-in providers, Sign-in protection, Access governance and Identity automation. Open only the groups you need; the group containing your current page opens automatically.

Start with the job you need to do, rather than the security abbreviation in the menu. Qorionix brings identity, privileged access, security monitoring, endpoint response, AI assistance and compliance records into one workspace. Each area has its own setup and permissions. A page opening successfully does not establish that a device is reporting, a provider is connected or a requested action has finished.

Start with your organisation

Use Getting started to connect your organisation and check the first results. The overview guide explains the main workspace. After connecting Microsoft 365, follow the connection guide and posture report guidance. A provider connection, importing people and completing an assessment are separate outcomes; check each one.

People and sign-in

Identity covers users, groups, roles and profile attributes. For applications, start with which SSO screen to use. For protection, read authenticator settings, password policy and account recovery. Access reviews and approval requests help owners decide who should retain access.

Sensitive accounts and outside technicians

Privileged access manages accounts that can make important changes. Begin with safes, targets and the vault. Then read session setup and credential rotation. Separate guides explain vendor access, temporary cloud roles and reviewed policy files.

Events, alerts and device response

Detection brings logs together for searching and alerting. Start with your first log source, then search, detection rules and incidents. Endpoint response starts with endpoint health and telemetry. If an alert arrives, use the response checklist. Read the impact before isolating a device or stopping a process.

AI investigation and action

Sentinel Q helps explain findings and propose next steps. Read a decision, action plans and autonomy permissions. Check the evidence, recommendation and actual action result separately. A queued investigation or proposed response means work remains. AI budgets and provider availability can delay investigation; a high model score is not a guarantee that a conclusion is correct.

Connections, governance and learning

Use Integrations for provider setup and connection health for failures. Compliance guides cover evidence, access reviews and the individual reporting registers. Academy supports learning. Partners managing several organisations should read the portfolio guide. Account guides cover plans, retention, notification preferences and support access.

When a control is missing or something fails

Check your selected organisation, role and enabled modules first. Features may require a configured provider, enrolled device or specific permission. A feature that is unavailable in your workspace should not be treated as completed because an article describes it. Use the related troubleshooting guide, record the time and visible error, and contact support with the affected task. Check service status for wider disruption. Never include a password, API key, invitation link or recovery code in a support request.

Was this article wrong?

If a procedure here does not match what you see, or a limit we described has changed, tell us and we will fix the page. Email us about this article, or see how to get help if you need an answer rather than a correction.

Everything in getting started