Nathan Carey’s Post

View profile for Nathan Carey, graphic

Security Architecture Lead @ BDO | Cybersecurity

So critical to move protections and most importantly, visibility, directly to graph nowadays. In a world that moved to APIs a decade ago, it’s been hard as a customer to leverage security at this level before.

View profile for Marko Lauren, graphic

Sr. Cyber Security Technical Specialist at Microsoft

🔥 New in #Entra #IDProtection 🔥 Suspicious #GraphAPI traffic #detection now generally available (#GA) > ID Protection will now change a user’s #risk level if we observe them making an abnormally high number of calls to #MSGraph and #AADGraph compared to that user’s baseline, which will help identify both compromised users and insider threats scavenging for intel. 🔥 Detecting #tokentheft in #realtime and post-breach > Our industry-first Real-time #Anomalous #Token Detection automatically #disrupts #tokenreplay attacks in real-time when paired with a risk-based Conditional Access for sign-ins. > We have also built an #offline #detection that #extends coverage of Microsoft 365 Defender’s Attacker in the Middle signals (#AiTM) 🔥 Admin #feedback on detections #trains our #ML > You can now help train our ML models by acting on risky sign-ins. You can confirm a sign-in as #risky, #safe, or #dismiss risk. Each of these will send information back to our ML model and #optimize future detections for your organization. ✅ On-premises password changes to reset user risk is now generally available (#GA) ✅ New Entra ID Protection #dashboard generally available (#GA) 💡 Read more in Blog: https://lnkd.in/dNJTwdrv 💡 Risk detections mapped to riskEventType: https://lnkd.in/d6vbiV6s 💡 How To: Give risk feedback in Microsoft Entra ID Protection: https://lnkd.in/dZfBjt2j #AiTM #ITDR

  • No alternative text description for this image

To view or add a comment, sign in

Explore topics