Back to Basics: Identity protection in Azure Active Directory
Identity Protection is a security feature in Azure Active Directory that helps to prevent, detect, and remediate identity risk in an organization. Using multiple detections, it monitors every login for identity compromise, sorting sign-ins into three categories of risk: low, medium, and high.
These risk ratings can be used to create automated user risk policies that balance employee productivity with corporate security. For example, multi-factor authentication can be set as a requirement for a sign-in that is high-risk.
Join Paula as she reviews the different policies in Azureβs Identity Protection (User Risk, Sign-in Risk, and MFA Registration) and explains how to:
- Β Β Β Select which users you want to include in the policy
- Β Β Β Exclude specific users (such as your βbreak-glassβ account so that you cannot be accidentally logged out of Azure Active Directory)
- Β Β Β Specify risk levels as high, medium, or low in the User Risk section
- Β Β Β Block access or allow access but require a password change in the Access section
- Β Β Β Activate and enforce a policy that you have set up and configured
Paula shows how to monitor your organization for risky users and risky sign-ins in the Report section of Azureβs Identity Protection dashboard and takes you through how to delete the conditional access policies you create.
Discover what happens when a log-in to an organizationβs Microsoft Office portal from a Tor browser is flagged as βsomething strangeβ by Azure ADβs Identity Protection. Youβll also learn how to mark identity as compromised if, for example, sign-ins have been made in two completely different locations using that identity.
Paula covers identity security from the perspectives of both the administrator and the user, giving a clear view of the steps an employee must take when their account has been identified as risky.
With this identity security lesson under your belt, youβll be able to intelligently react to potentially dangerous situations.Β Take a stroll around the CQURE Academy blog now for more Azure Active Directory security tips including β8 things to avoidβ in Azure AD.
Holiday time is approaching and we know that everyone loves to receive gifts!Β Especially at CQURE, the idea of sharing is close to us and we would like to invite you to ourΒ Great Racoon Giveaway Contest, where you will get a chance to winΒ $3920-worth voucher for any of CQURE Academy Live Courses!Β
Please click on the below bannerΒ to find out more about the contest:
The post Back to Basics: Identity protection in Azure Active Directory appeared first on CQURE Academy.
