azure active directory
12 TopicsNew Blog Post | Prevent sophisticated attacks: MCAS and M365 Defender
New Blog Post | Prevent sophisticated attacks: MCAS and M365 Defender - Microsoft Tech Community Attacks don’t respect domain boundaries. They move fast across cloud applications, endpoints, user identities and data domains. They establish a foothold and move laterally across platforms. The integration of Microsoft Cloud App Security and Microsoft 365 Defender is designed to reduce the surface area for potential attack by accomplishing these three key objectives (and that’s just the start): Protecting against attacks and coordinating defensive responses in multi-cloud, multi-app environments and other Microsoft 365 Defender workloads through signal sharing and automated actions. Delivering complete narration of the attack across products for security teams by joining data on alerts, suspicious events by comparing UEBA analytics and impacted assets to incidents. Enabling security teams to perform detailed, effective threat hunting across all security domains.Conditional access app control differences
Hello I have a bunch of saml enterprise apps that have been added to Azure enterprise applications. Azure is the IDP for these apps. If i create a CA policy and add for example the "Docusign" app to "Use Conditional access app control" and select "Monitor" , after logging into the app i can now see the app in "Connected apps" in cloud app security. My question is what is the difference between adding "Docusign" using the wizard below vs. adding the app using a CA policy ?SolvedTo Block file downloads in using Teams on a Mac what should I use Session or Access policies?
We have a need to allow users access to MS Teams on BYO Mac devices, but we need to block file downloads altogether. I am trying a combination of Conditional Access policy with "Conditional Access App Control: Custom policy" + MCAS Session policy with Teams as selected app. It just doesn't seem to work. Anyone tried this before? Any suggestions? File download is not even showing up as one of the activities.