Search icon CANCEL
Subscription
0
Cart icon
Your Cart (0 item)
Close icon
You have no products in your basket yet
Save more on your purchases! discount-offer-chevron-icon
Savings automatically calculated. No voucher code required.
Arrow left icon
Explore Products
Best Sellers
New Releases
Books
Videos
Audiobooks
Learning Hub
Newsletter Hub
Free Learning
Arrow right icon
Arrow up icon
GO TO TOP
 Microsoft Defender for Identity in Depth

You're reading from   Microsoft Defender for Identity in Depth An exhaustive guide to ITDR, breach prevention, and cyberattack response

Arrow left icon
Product type Paperback
Published in Dec 2024
Publisher Packt
ISBN-13 9781835884485
Length 380 pages
Edition 1st Edition
Arrow right icon
Author (1):
Arrow left icon
Pierre Thoor Pierre Thoor
Author Profile Icon Pierre Thoor
Pierre Thoor
Arrow right icon
View More author details
Toc

Table of Contents (16) Chapters Close

Preface 1. Part 1:Mastering the Fundamentals of Microsoft Defender for Identity FREE CHAPTER
2. Chapter 1: Introduction to Microsoft Defender for Identity 3. Chapter 2: Setting up Microsoft Defender for Identity 4. Chapter 3: Leveraging MDI PowerShell for Automation and Management 5. Part 2: Advanced Configuration, Integration, and Threat Detection
6. Chapter 4: Integrating MDI with AD FS, AD CS, and Entra Connect 7. Chapter 5: Extending MDI Capabilities Through APIs 8. Chapter 6: Mastering KQL for Advanced Threat Detection in MDI 9. Part 3: Operational Excellence with Microsoft Defender for Identity
10. Chapter 7: Investigating and Responding to Security Alerts 11. Chapter 8: Utilizing MDI Action Accounts Effectively 12. Chapter 9: Building a Resilient Identity Threat Detection and Response Framework 13. Chapter 10: Navigating Challenges: MDI Troubleshooting and Optimization 14. Index 15. Other Books You May Enjoy

Unpacking key features and benefits of MDI

MDI is designed to protect against identity-based attacks in hybrid environments, providing a vigilant watch over AD and Microsoft Entra ID. MDI continuously monitors user activities and authentication patterns, offering real-time alerts and insights to detect threats such as credential theft, lateral movement, and privilege escalation.

These are the key features of MDI:

  • Behavioral analytics: MDI builds a baseline of normal user behaviors to spot unusual activities, such as unexpected logins or data access. This helps catch compromised accounts early before attackers can cause serious harm.
  • Advanced threat detection: MDI excels at detecting sophisticated attack techniques, such as PtH, PtT, Golden Ticket, Silver Ticket, and Kerberoasting. It also catches threats such as DCShadow and DCSync, providing insights into potential AD manipulation.
  • Lateral Movement Path (LMP) analysis: MDI maps potential pathways attackers could...
lock icon The rest of the chapter is locked
Register for a free Packt account to unlock a world of extra content!
A free Packt account unlocks extra newsletters, articles, discounted offers, and much more. Start advancing your knowledge today.
Unlock this book and the full library FREE for 7 days
Get unlimited access to 7000+ expert-authored eBooks and videos courses covering every tech area you can think of
Renews at $19.99/month. Cancel anytime
Banner background image