Book Image

Microsoft 365 Security, Compliance, and Identity Administration

By : Peter Rising
5 (1)
Book Image

Microsoft 365 Security, Compliance, and Identity Administration

5 (1)
By: Peter Rising

Overview of this book

The Microsoft 365 Security, Compliance, and Identity Administration is designed to help you manage, implement, and monitor security and compliance solutions for Microsoft 365 environments. With this book, you’ll first configure, administer identity and access within Microsoft 365. You’ll learn about hybrid identity, authentication methods, and conditional access policies with Microsoft Intune. Next, you’ll discover how RBAC and Azure AD Identity Protection can be used to detect risks and secure information in your organization. You’ll also explore concepts such as Microsoft Defender for endpoint and identity, along with threat intelligence. As you progress, you’ll uncover additional tools and techniques to configure and manage Microsoft 365, including Azure Information Protection, Data Loss Prevention (DLP), and Microsoft Defender for Cloud Apps. By the end of this book, you’ll be well-equipped to manage and implement security measures within your Microsoft 365 suite successfully.
Table of Contents (25 chapters)
1
Part 1: Implementing and Managing Identity and Access
7
Part 2: Implementing and Managing Threat Protection
13
Part 3: Implementing and Managing Information Protection
17
Part 4: Managing Compliance Features in Microsoft 365

Planning your regulatory compliance journey in Microsoft 365

To start planning for regulatory compliance using Microsoft 365, organizations should be aware of the rules and regulations to which they need to adhere to be considered compliant by regulatory bodies and standards. These include the General Data Protection Regulation (GDPR), which comprises rules for organizations that offer goods and services to people in the European Union (EU) or ones that collect and analyze data for EU residents regardless of where they or their organization may be located. The GDPR provides individuals with the right to manage any personal data that relates to them that has been collected by an organization. The individual can exercise these rights by lodging a Data Subject Request (DSR). The organization must respond in a timely fashion to DSRs and also perform Data Protection Impact Assessments (DPIAs).

Some of the terms and references you may encounter in relation to GDPR include the following...