Planning and implementing security defaults
Microsoft provides security defaults within Azure AD to assist companies that are new to Azure AD and Microsoft's cloud in protecting identities. In new tenants, security defaults are already turned on and in place, so there isn't any planning or implementation required. However, there are situations where security defaults will need to be turned off as more advanced identity protection solutions are enabled, such as Conditional Access policies. To access the security defaults, navigate to Azure AD and scroll down under Manage in the left-hand menu to Properties. Then, scroll down in the Properties tile to Manage Security defaults, as shown in Figure 6.25:
Security defaults provide basic identity security settings to the entire tenant and are very helpful to protect a company. These settings include the following:
- Requiring all users to register for Azure...