Microsoft Defender for Identity monitors your domain controllers by capturing and parsing network traffic and leveraging Windows events directly from your domain controllers, then analyzes the data for attacks and threats. Utilizing profiling, deterministic detection, machine learning, and behavioral algorithms Defender for Identity learns about your network, enables detection of anomalies, and warns you of suspicious activities.
Help eliminate on-premises vulnerabilities to prevent attacks before they happen.
Help security operation teams use their time effectively by understanding the greatest threats.
Help security operation teams prioritize information to focus on actual threats, not false signals.
The Microsoft Defender for Identity implementation service provides you with a complete overview and hands-on experience to get Microsoft Defender for Identity up and running in your environment. The service consists of the following deliverables:
Workshop: During the workshop we provide you with an overview of Microsoft Defender for Identity so that you understand the prerequisites, features and real world use-cases
Initial Setup and Configuration: We support you with getting Microsoft Defender for Identity up and running in your environment
Detect and Respond using Microsoft Defender for Identity Learn how to use Microsoft Defender for Identity to gain visibility into threats within Active Directory, identities and devices.
Identity Security Posture Assessment – Learn how to use the Identity Security Posture assessments
Documentation: Microsoft Defender for Identity setup and configuration documentation