Book Image

Microsoft 365 Security, Compliance, and Identity Administration

By : Peter Rising
5 (1)
Book Image

Microsoft 365 Security, Compliance, and Identity Administration

5 (1)
By: Peter Rising

Overview of this book

The Microsoft 365 Security, Compliance, and Identity Administration is designed to help you manage, implement, and monitor security and compliance solutions for Microsoft 365 environments. With this book, you’ll first configure, administer identity and access within Microsoft 365. You’ll learn about hybrid identity, authentication methods, and conditional access policies with Microsoft Intune. Next, you’ll discover how RBAC and Azure AD Identity Protection can be used to detect risks and secure information in your organization. You’ll also explore concepts such as Microsoft Defender for endpoint and identity, along with threat intelligence. As you progress, you’ll uncover additional tools and techniques to configure and manage Microsoft 365, including Azure Information Protection, Data Loss Prevention (DLP), and Microsoft Defender for Cloud Apps. By the end of this book, you’ll be well-equipped to manage and implement security measures within your Microsoft 365 suite successfully.
Table of Contents (25 chapters)
1
Part 1: Implementing and Managing Identity and Access
7
Part 2: Implementing and Managing Threat Protection
13
Part 3: Implementing and Managing Information Protection
17
Part 4: Managing Compliance Features in Microsoft 365

Planning and configuring access reviews

Azure AD access reviews are a feature of Azure AD Premium P2. They enable administrators to ensure that users within the tenant have the appropriate level of access. Access reviews are also useful for weeding out stale accounts or accounts that are not often used. Users can participate in this process themselves, or their supervisors can review their current level of access. Once a review is completed, changes can be made and access can be revoked from users, as deemed appropriate.

To create and execute an access review, you need to follow these steps:

  1. Log in to the Azure portal as either a Global Administrator or a User Administrator. Navigate to Azure Active Directory | Identity Governance and select Access reviews.
  2. Choose the New access review option:
Figure 4.32: Access reviews

Figure 4.32: Access reviews

  1. You can select either Teams + Groups or Applications. For this example, create an access review by selecting...