Event banner
Microsoft Detection and Response Team (DART) AMA
Event Ended
Tuesday, Mar 15, 2022, 09:00 AM PDTEvent details
We are very excited to announce our Microsoft Detection and Response Team (DART) AMA!
About DART: Our job is to respond to compromises and help our customers become cyber-resilient. This is al...
Trevor_Rusher
Updated Feb 16, 2022
mickeymitic
Mar 15, 2022Copper Contributor
What would be your suggestion when stuff in an organisation are encouraged to use their personnal devices. Incident where account was comprmosied through the use of personal device, what would be the right approach. Some policies on Defender or conditional access? Suggestions?
- eolsonMar 15, 2022
Microsoft
Conditional access for sure! Hopefully these devices are onboarded to Defender for Endpoint. From an incident response perspective, getting personal devices when there's a compromise is going to be a tough one... so when it gets to that point you probably want to have a discussion with your legal team.