175 questions with Microsoft Defender for Identity-related tags

Sort by: Updated
1 answer

WDAC policy and Powershell constrained language mode

Hello, if I understood these articles (1 , 2, 3) correctly, when WDAC is enabled, the Powershell session starts in constrained language mode. Please tell me how to allow users to run powershell in Full Language mode without disabling option 11…

PowerShell
PowerShell
A family of Microsoft task automation and configuration management frameworks consisting of a command-line shell and associated scripting language.
2,272 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
asked 2024-01-10T19:12:40.5933333+00:00
Yevhen UK 0 Reputation points
commented 2024-01-11T11:39:57.5733333+00:00
Yevhen UK 0 Reputation points
1 answer One of the answers was accepted by the question author.

Security recommendations in Microsoft Defender Portal

Hi I have many VA that need to be remediate but first i want to test on single device after that i want to float on all but how is that possible But when i click on request Remediation it open another page where i run on all

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-12-15T07:10:38.7566667+00:00
Muhammad Zeeshan 100 Reputation points
accepted 2024-01-10T07:22:20.7466667+00:00
Muhammad Zeeshan 100 Reputation points
0 answers

How to get Risk Level and Top Entities from Microsoft Defender Portal using Powershell

Hello, I'm having trouble using Powershell to obtain data for the Cloud Discovery Dashboard from the Microsoft Defender Portal. Is it possible for me to obtain data from PowerShell that precisely matches the provided image? I really need to get all the…

PowerShell
PowerShell
A family of Microsoft task automation and configuration management frameworks consisting of a command-line shell and associated scripting language.
2,272 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2024-01-05T06:39:10.3266667+00:00
Efa Shahira 20 Reputation points
edited the question 2024-01-08T01:33:44.1233333+00:00
Xiaopo Yang - MSFT 12,151 Reputation points Microsoft Vendor
1 answer One of the answers was accepted by the question author.

Differences between Microsoft Defender XDR and Sentinel

I wonder differences between Microsoft Defender XDR and Sentinel I understand that Microsoft Defender XDR consolidates security alerts (including Cloud Defender, Identity Defender, Endpoint Defender, etc.). While Sentinel can use various connectors…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Sentinel
Microsoft Sentinel
A scalable, cloud-native solution for security information event management and security orchestration automated response. Previously known as Azure Sentinel.
1,040 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-12-12T06:56:53.72+00:00
mara7 161 Reputation points
accepted 2024-01-04T00:09:39.5933333+00:00
mara7 161 Reputation points
2 answers One of the answers was accepted by the question author.

Defender Intrusion Prevention

Hi Team, As per the latest announce about Intune, Intrusion Prevention feature is deprecated. What is the equivalent feature doing the same behavior ? Thanks, Alaa Elrayes

Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,664 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
asked 2023-12-25T10:52:44.82+00:00
A.Elrayes 186 Reputation points
accepted 2023-12-31T07:30:42.5233333+00:00
A.Elrayes 186 Reputation points
1 answer

Cannot connect to compliance Powershell.

Cannot connect to compliance Powershell. I am getting below error when running Connect-IPPSSession . WARNING: Your connection has been redirected to the following URI:…

Microsoft Exchange Online Management
Microsoft Exchange Online Management
Microsoft Exchange Online: A Microsoft email and calendaring hosted service.Management: The act or process of organizing, handling, directing or controlling something.
4,342 questions
Microsoft Intune Compliance
Microsoft Intune Compliance
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Compliance: Adhering to rules, standards, policies, and laws.
144 questions
PowerShell
PowerShell
A family of Microsoft task automation and configuration management frameworks consisting of a command-line shell and associated scripting language.
2,272 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
asked 2023-12-22T06:36:19.96+00:00
ESJ 41 Reputation points
commented 2023-12-28T07:47:34.8466667+00:00
Shaofan Lv-MSFT 6,915 Reputation points Microsoft Vendor
1 answer

Update Microsoft Windows 10 (OS and built-in applications)  Remediation required

Update Windows 10 to a later version to mitigate 1257 known vulnerabilities affecting your devices. This security recommendation takes into account the following built-in applications: Microsoft Edge, Internet Explorer. I want to remediate this but i…

Windows 10 Security
Windows 10 Security
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
2,818 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
asked 2023-12-14T10:06:50.67+00:00
Muhammad Zeeshan 100 Reputation points
commented 2023-12-27T08:16:09.35+00:00
Muhammad Zeeshan 100 Reputation points
0 answers

Authenticator and Outlook have non Microsoft licenses and many of them that are adding extra scripts and layers.

When reviewing my licenses in my Microsoft Outlook Application, I have found licenses for applications that are validating software that gives backdoor intrusion access while I'm setting up new Authenticator Connections. There are also data compiling…

Microsoft Authenticator
Microsoft Authenticator
A Microsoft app for iOS and Android devices that enables authentication with two-factor verification, phone sign-in, and code generation.
5,972 questions
Microsoft Configuration Manager
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
asked 2023-12-17T05:28:03.2733333+00:00
Nicholas 0 Reputation points
2 answers

About sign-in and risky user report notification

I am supposed to have the risky user and sign-in risk report as the user alert is enable by default But even though having High risk sign-in I didnot get any notification at all There are more than 10 GA and confirm that there was not any…

Microsoft Identity Manager
Microsoft Identity Manager
A family of Microsoft products that manage a user's digital identity using identity synchronization, certificate management, and user provisioning.
648 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
asked 2023-12-13T08:02:10.9433333+00:00
ネパリ サンデャ 380 Reputation points
answered 2023-12-15T00:28:46.73+00:00
ネパリ サンデャ 380 Reputation points
0 answers

User and group membership reconnaissance (SAMR)

Hello, We have received "User and group membership reconnaissance (SAMR)" from defender. I only see the enumeration events no commands, process etc. related. I was wondering how to find root cause for these queries from the user machine. There…

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,149 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
asked 2023-12-13T16:40:09.4166667+00:00
George OCAK 70 Reputation points
2 answers

Which tool or service is responsible for vulnerability scanner in M365 defender suite for Endpoints, Identify, Apps, Office 365 and Data and how it works?

Which tool or service is responsible for vulnerability scanner in M365 defender suite for Endpoints, Identify, Apps, Office 365 and Data and how it works?

Microsoft 365
Microsoft 365
Formerly Office 365, is a line of subscription services offered by Microsoft which adds to and includes the Microsoft Office product line.
4,217 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,351 questions
asked 2023-12-03T16:10:52.96+00:00
Vinod Survase 4,716 Reputation points
commented 2023-12-11T13:56:57.7466667+00:00
Vinod Survase 4,716 Reputation points
1 answer One of the answers was accepted by the question author.

Need to create Conditional Access Policy for Certificate Based authentication

Hello All, I am attempting to establish a Conditional Access Policy for users using Certificate Based Authentication. I want to enable Certificate Based Authentication(Passwordless) for users accessing specific applications from outside the company…

Microsoft Identity Manager
Microsoft Identity Manager
A family of Microsoft products that manage a user's digital identity using identity synchronization, certificate management, and user provisioning.
648 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
Microsoft Entra External ID
Microsoft Entra External ID
A modern identity solution for securing access to customer, citizen and partner-facing apps and services. It is the converged platform of Azure AD External Identities B2B and B2C. Replaces Azure Active Directory External Identities.
2,740 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,351 questions
asked 2023-12-07T04:36:03.0233333+00:00
ShashankSaxena-2458 131 Reputation points
accepted 2023-12-07T07:46:39.96+00:00
ShashankSaxena-2458 131 Reputation points
1 answer One of the answers was accepted by the question author.

How to allow a url in office365

Hi All One of the forms url got flagged by Microsoft for phishing, let the say the url is https://forms.office.com/pages/xxxxxxxxxxxxxxxxxxxxxxxx This url is genuine and it is not a phishing url. How can i allow this url or remove the flag, experts…

Microsoft Exchange Online
Microsoft Exchange Online Management
Microsoft Exchange Online Management
Microsoft Exchange Online: A Microsoft email and calendaring hosted service.Management: The act or process of organizing, handling, directing or controlling something.
4,342 questions
Exchange Server Management
Exchange Server Management
Exchange Server: A family of Microsoft client/server messaging and collaboration software.Management: The act or process of organizing, handling, directing or controlling something.
7,466 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
asked 2023-10-04T19:31:30.64+00:00
Glenn Maxwell 10,571 Reputation points
accepted 2023-12-05T19:42:37.3233333+00:00
Glenn Maxwell 10,571 Reputation points
1 answer One of the answers was accepted by the question author.

Do we need to Defender for Identity if I am using Microsoft Entra ID

Dear Team, Hope you are doing well. We need your support in product selection from Microsoft. I have recently taken up a new position as old person has left the company. we are using Microsoft Entra ID with 500 users and we use office 365. I currently…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,351 questions
asked 2023-11-29T17:19:23.1633333+00:00
N-Open 160 Reputation points
commented 2023-12-01T18:43:39.43+00:00
N-Open 160 Reputation points
1 answer

Microsoft Defender Device Onboard Local Script Device Limit

Hello, I would like to use the Defender Onboarding Local Script to onboard between 40 & 50 devices that failed to onboard with the Intune deployment method used for mass deployments. It says that this type of deployment method can only be used on a…

Windows
Windows
A family of Microsoft operating systems that run across personal computers, tablets, laptops, phones, internet of things devices, self-contained mixed reality headsets, large collaboration screens, and other devices.
4,997 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Intune Configuration
Microsoft Intune Configuration
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Configuration: The process of arranging or setting up computer systems, hardware, or software.
1,783 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,664 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
asked 2023-11-22T15:52:50.9633333+00:00
Shaun Slater 61 Reputation points
commented 2023-11-23T09:20:12.9166667+00:00
Akshay-MSFT 17,641 Reputation points Microsoft Employee
0 answers

Incorporación de defeder endpoint

Buenas tardes. Como puedo corregir este error que da al momento de incorporar un punto de conexion de defender endpoint. [Error Id: 15, Error Level: 1] Unable to start Microsoft Defender for Endpoint Service. Error message: El nombre de servicio no…

Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
asked 2023-11-17T22:28:00.0466667+00:00
Felipe Bedoya 0 Reputation points
1 answer One of the answers was accepted by the question author.

Microsoft Exchange and Microsoft Defender Flag My Site as Phishing--What Can I Do?

Hi, For about a month our site (domain removed due to privacy) has apparently been flagged by Microsoft as a phishing site. A Microsoft Defender warning comes up to that effect on Edge (and only Edge) and any email we send that includes our URL is not…

Microsoft Exchange Online
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
asked 2023-11-16T20:54:43.0966667+00:00
David Ramm 20 Reputation points
accepted 2023-11-17T21:46:46.1233333+00:00
David Ramm 20 Reputation points
1 answer One of the answers was accepted by the question author.

How can we procure the Microsoft Defender Experts for XDR service?

Hi All, I want to explore the Microsoft Defender Experts for XDR Services for Microsoft. How can I procure this service from Microsoft? Please guide.

Windows 10 Security
Windows 10 Security
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
2,818 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Intune Security
Microsoft Intune Security
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
370 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-11-01T18:09:52.1633333+00:00
Garima Das 1,041 Reputation points
accepted 2023-11-16T11:49:28.7266667+00:00
Garima Das 1,041 Reputation points
1 answer

What are the tools required to work using MXDR?

Hi everyone, I am researching on Microsoft Defender for XDR service. I wanted to understand what other Microsoft tools can be used for Security that are either available or can be integrated with the Security Portal. Thanks.

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Intune Security
Microsoft Intune Security
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
370 questions
Microsoft Sentinel
Microsoft Sentinel
A scalable, cloud-native solution for security information event management and security orchestration automated response. Previously known as Azure Sentinel.
1,040 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-11-01T07:31:48.9233333+00:00
Garima Das 1,041 Reputation points
commented 2023-11-14T20:16:31.52+00:00
JamesTran-MSFT 36,531 Reputation points Microsoft Employee
1 answer

How to fix data connector for MDE (Sentinel)

Can't connect Sentinel to my MDE portal as it says that I do not have the required license but I have got it and have workstation onboarded

Microsoft Sentinel
Microsoft Sentinel
A scalable, cloud-native solution for security information event management and security orchestration automated response. Previously known as Azure Sentinel.
1,040 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
175 questions
asked 2023-10-26T06:27:03.26+00:00
Voiture 0 Reputation points
commented 2023-11-10T00:04:15.1133333+00:00