Implementing and managing Microsoft Defender for Identity
As a best practice, Microsoft recommends utilizing the power of the cloud to protect all identities, whether on-premises or in the cloud, and the tool of choice is Microsoft Defender for Identity (formerly known as Advanced Threat Protection (ATP)). As we learned previously with Azure AD Password Protection, Microsoft Defender for Identity relies on a cloud configuration and agents/sensors installed on all identity management servers in your on-premises environment. This includes all domain controllers, ADFS servers, and any additional devices identified as part of the Access Management plane, and all one-way traffic can be configured and controlled through a proxy service that allows traffic to specific endpoints.
Utilizing Microsoft Defender for Identity provides security professionals the ability to quickly detect and respond to attacks in a hybrid infrastructure, utilizing best-in-class user activity monitoring and analytics...