Leveraging Microsoft Defender for Identity - Capabilities and Integration
Offered By: John Savill's Technical Training via YouTube
Course Description
Overview
Explore Microsoft Defender for Identity in this comprehensive video tutorial. Learn how to detect and respond to attacks against on-premises Active Directory environments, and understand its full capabilities and integration with the larger Defender XDR. Discover protection strategies for cloud identity and apps, on-premises identity, and the importance of bringing signals together for Identity Threat Detection and Response (ITDR). Dive into Defender for Identity capabilities, example incidents and alerts, sensor deployment, updating, and behavior. Gain insights on hunting login activity, signals inspected by Defender for Identity, and licensing options. Conclude with a summary and next steps to enhance your organization's identity security posture.
Syllabus
- Introduction
- Protection for cloud identity and apps
- On-premises identity
- Bringing signals together and ITDR
- ITDR in Defender
- Defender for Identity capabilities
- Example incidents and alerts
- Defender for Identity sensor deployment
- Sensor updating
- Sensor behavior
- Hunting on login activity
- Signals inspected by Defender for Identity
- Licensing
- Summary and next steps
- Close
Taught by
John Savill's Technical Training
Related Courses
What's New in SIEM and XDR - Attack Disruption and SOC EmpowermentMicrosoft via YouTube SIEM and XDR: Automating Threat Detection and Response
Microsoft via YouTube Microsoft Defender: Stop Attacks and Reduce Security Operations Workload with XDR
Microsoft via YouTube Security Hot Takes: Buzzwords and Predictions
Pluralsight The Always-On Purple Team: Automated CI/CD for Detection Engineering
RSA Conference via YouTube