Configuring a Microsoft Defender for Identity Solution
As you learned in Chapter 1, Planning for Hybrid Identity, the default identity method in Microsoft 365 is cloud-only. However, very few organizations are in the fortunate position to leverage cloud-only identities. Start-up businesses and organizations with minimal infrastructure find adopting this method easier than those with more complex infrastructure and a long-term reliance on on-premises Active Directory and legacy applications. The latter will likely leverage some form of hybrid identity strategy.
Organizations with this challenge need to consider how to extend the cloud-based protection features included in Microsoft 365 to their on-premises Active Directory domain controllers. This is possible with Microsoft Defender for Identity (MDI), which was formerly known as Azure Advanced Threat Protection or Azure ATP. MDI is a Microsoft 365 cloud-based solution that leverages signals from your on-premises Active Directory...