Your network contains an on-premises Active Directory domain. The domain contains servers that run Windows Server and have advanced auditing enabled.
The security logs of the servers are collected by using a third-party SIEM solution.
You purchase a Microsoft 365 subscription and plan to deploy Microsoft Defender for Identity by using standalone sensors.
You need to ensure that you can detect when sensitive groups are modified and when malicious services are created.
What should you do?
Maxx4
1 year, 12 months agoMaxx4
1 year, 12 months agopete26
2 years, 8 months agoBob27745
2 years, 9 months agoheshmat2022
2 years, 9 months ago