Summary
In this chapter, we reviewed the massive scope of Microsoft 365 Defender. You learned about the core services that build up the suite, and how the Microsoft 365 Defender portal provides an XDR unified response interface for them.
You learned that MDE’s capabilities are far wider in scope than traditional endpoint protection platforms, spanning a diverse set of OSs. We then moved on to MDI, and you learned that it satisfies the need for heightened visibility into on-premises AD, with insights into potential hybrid identity threats.
To protect Microsoft 365 services such as Exchange Online, Teams, SharePoint Online, and OneDrive for Business, you learned how MDO supplements the security of EOP with Safe Attachments, Safe Links and enhanced anti-phishing, and scopes its defense beyond email and into these other services. Reaching beyond Office 365 and into other cloud services, you learned about MDA as a cloud access security broker to facilitate shadow IT discovery...