Book Image

Microsoft 365 Security, Compliance, and Identity Administration

By : Peter Rising
5 (1)
Book Image

Microsoft 365 Security, Compliance, and Identity Administration

5 (1)
By: Peter Rising

Overview of this book

The Microsoft 365 Security, Compliance, and Identity Administration is designed to help you manage, implement, and monitor security and compliance solutions for Microsoft 365 environments. With this book, you’ll first configure, administer identity and access within Microsoft 365. You’ll learn about hybrid identity, authentication methods, and conditional access policies with Microsoft Intune. Next, you’ll discover how RBAC and Azure AD Identity Protection can be used to detect risks and secure information in your organization. You’ll also explore concepts such as Microsoft Defender for endpoint and identity, along with threat intelligence. As you progress, you’ll uncover additional tools and techniques to configure and manage Microsoft 365, including Azure Information Protection, Data Loss Prevention (DLP), and Microsoft Defender for Cloud Apps. By the end of this book, you’ll be well-equipped to manage and implement security measures within your Microsoft 365 suite successfully.
Table of Contents (25 chapters)
1
Part 1: Implementing and Managing Identity and Access
7
Part 2: Implementing and Managing Threat Protection
13
Part 3: Implementing and Managing Information Protection
17
Part 4: Managing Compliance Features in Microsoft 365

Managing Cloud App Discovery

With Cloud App Discovery, you can manually upload traffic logs from your firewall and proxies and analyze for cloud app activity. Additionally, you can automate regular log collection. This is done by completing the following steps:

  1. Log in to the MDA portal at https://security.microsoft.com as a Global Administrator or a Security Administrator and navigate to Cloud apps | Cloud Discovery:
Figure 10.4: Cloud Discovery

Figure 10.4: Cloud Discovery

  1. The first thing to do is to create a snapshot report to provide ad hoc visibility into a set of traffic logs you manually upload from your firewalls and proxies. To do this, click on Cloud App Security Proxy and choose Create snapshot report:
Figure 10.5: Creating a snapshot report

Figure 10.5: Creating a snapshot report

  1. Enter a report name and description for your report. You also have the Anonymize private information option, as shown in the following screenshot. This should be selected if you...