It's assumed you already have SentinelOne Singularity
Endpoint set up. When integrating SentinelOne with Device Security
and Cortex XSOAR, you need to provide
Cortex XSOAR with an API token from
SentinelOne. Cortex XSOAR uses the API
token to poll SentinelOne for information about endpoints and
vulnerabilities.
To generate the API token from SentinelOne, create a SentinelOne
role for Cortex XSOAR to use. Then assign the
role to a service user in SentinelOne to generate the API token.