You have an Azure AD tenant that syncs with an Active Directory Domain Services (AD DS) domain. Client computers run Windows and are hybrid-joined to Azure AD.
You are designing a strategy to protect endpoints against ransomware. The strategy follows Microsoft Security Best Practices.
You plan to remove all the domain accounts from the Administrators groups on the Windows computers.
You need to recommend a solution that will provide users with administrative access to the Windows computers only when access is required. The solution must minimize the lateral movement of ransomware attacks if an administrator account on a computer is compromised.
What should you include in the recommendation?
zellck
Highly Voted 1 year, 11 months agozellck
1 year, 11 months agoyarvis
Highly Voted 2 years, 2 months agoP1mp
Most Recent 5 months, 1 week agoDirkonormalo
5 months, 4 weeks agokeithtemplin
8 months, 1 week agobesoaus
10 months, 1 week ago[Removed]
1 year, 1 month agoZabulon777
1 year, 1 month agoRamye
1 year, 3 months agoJG56
1 year, 5 months agoKvoth3
1 year, 8 months agonExoR
1 year, 4 months agoArio
1 year, 10 months agoBaz10
1 year, 1 month agoBondaexam
1 year, 5 months agoItu2022
1 year, 10 months agoedurakhan
1 year, 11 months agoinit2winit
2 years agoBouncy
2 years, 2 months agoARYMBS
1 year, 7 months agojasscomp
1 year, 7 months agomynk29
2 years, 3 months agoJacquesvz
2 years, 3 months ago