This chapter introduced us to a deeper level of threat management possibilities in Microsoft 365. We covered the following exam topics:
- Planning a threat management solution
- Designing and configuring Azure ATP policies
- Designing and configuring Microsoft 365 ATP policies
- Monitoring ATA incidents
Many of the advanced threat management services can be purchased standalone, or are included in subscription packages such as Enterprise Mobility + Security E5.
Azure ATP sensors are installed one per AD forest and help protect your identities and mitigate suspicious activity threats on-prem or in the cloud.
Microsoft 365 ATP policies will likely appear in the exam multiple times, testing your ability to identify the correct tool/policy to use in different scenarios. Let's review the main options:
- ATP Safe Attachments protects users from potentially malicious attachment...