Planning and implementing security defaults
Microsoft provides security defaults within Azure Active Directory to assist companies that are new to Azure AD and Microsoft's cloud in protecting identities. In new tenants, security defaults are already turned on and in place, so there isn't any planning and implementation required. However, there are situations where security defaults will need to be turned off as more advanced identity protection solutions are enabled, such as Conditional Access policies. To access security defaults, navigate to Azure AD, scroll down under Manage in the left menu to Properties, and then scroll down in the Properties tile to Manage Security defaults, as shown in Figure 7.29:
Security defaults provide basic identity security settings to the entire tenant and are very helpful in protecting a company. These settings include the following:
- Requiring all users to register...