home.social

#mxdr โ€” Public Fediverse posts

Live and recent posts from across the Fediverse tagged #mxdr, aggregated by home.social.

  1. ๐ƒ๐ž๐Ÿ๐ž๐ง๐๐ž๐ซ ๐„๐ฑ๐ฉ๐ž๐ซ๐ญ๐ฌโ€™ ๐ซ๐ž๐œ๐จ๐ฆ๐ฆ๐ž๐ง๐๐š๐ญ๐ข๐จ๐ง๐ฌ ๐Ÿ๐จ๐ซ ๐ข๐ฆ๐ฉ๐š๐œ๐ญ๐Ÿ๐ฎ๐ฅ ๐ฌ๐ž๐œ๐ฎ๐ซ๐ข๐ญ๐ฒ ๐ฉ๐จ๐ฌ๐ญ๐ฎ๐ซ๐ž ๐ฆ๐š๐ง๐š๐ ๐ž๐ฆ๐ž๐ง๐ญ

    The Microsoft Defender Experts for XDR service provides value to customers from both a proactive and reactive perspective.

    While the basics of security hygiene, such as patching, inventory, security baselining, and least privilege delegations are undeniably important, once those bases are covered there are many more specific controls that receive less attention but can be critical in mitigating the frequency and impact of future incidents.

    Top Configuration Recommendations:

    Defender for Office 365

    โžก Restrict user ability to release emails from quarantine

    Defender for Endpoint

    โžกEnable tamper protection

    โžกEnable network protection in block mode

    โžกBlock untrusted and unsigned processes that run from USB

    โžกBlock JavaScript or VBScript from launching downloaded executable content

    โžกBlock executable content from email client and webmail

    Entra ID

    โžกEnsure multifactor authentication (MFA) is enabled for all users in administrative roles in Entra ID

    โžกRequire MFA for self-service password reset (SSPR)

    Defender for Identity

    โžกSet a honeytoken account

    techcommunity.microsoft.com/t5

    #defender #experts #xdr #edr #mde #mdi #mdo #entraid #azuread #microsoft #microsoftsecurity #azure #cloudsecurity #cloudnative #soc #cybersecurity #MXDR #triage #investigate #respond #prevent #quarantine #mfa #asr #deception

  2. ๐ƒ๐ž๐Ÿ๐ž๐ง๐๐ž๐ซ ๐„๐ฑ๐ฉ๐ž๐ซ๐ญ๐ฌโ€™ ๐ซ๐ž๐œ๐จ๐ฆ๐ฆ๐ž๐ง๐๐š๐ญ๐ข๐จ๐ง๐ฌ ๐Ÿ๐จ๐ซ ๐ข๐ฆ๐ฉ๐š๐œ๐ญ๐Ÿ๐ฎ๐ฅ ๐ฌ๐ž๐œ๐ฎ๐ซ๐ข๐ญ๐ฒ ๐ฉ๐จ๐ฌ๐ญ๐ฎ๐ซ๐ž ๐ฆ๐š๐ง๐š๐ ๐ž๐ฆ๐ž๐ง๐ญ

    The Microsoft Defender Experts for XDR service provides value to customers from both a proactive and reactive perspective.

    While the basics of security hygiene, such as patching, inventory, security baselining, and least privilege delegations are undeniably important, once those bases are covered there are many more specific controls that receive less attention but can be critical in mitigating the frequency and impact of future incidents.

    Top Configuration Recommendations:

    Defender for Office 365

    โžก Restrict user ability to release emails from quarantine

    Defender for Endpoint

    โžกEnable tamper protection

    โžกEnable network protection in block mode

    โžกBlock untrusted and unsigned processes that run from USB

    โžกBlock JavaScript or VBScript from launching downloaded executable content

    โžกBlock executable content from email client and webmail

    Entra ID

    โžกEnsure multifactor authentication (MFA) is enabled for all users in administrative roles in Entra ID

    โžกRequire MFA for self-service password reset (SSPR)

    Defender for Identity

    โžกSet a honeytoken account

    techcommunity.microsoft.com/t5

    #defender #experts #xdr #edr #mde #mdi #mdo #entraid #azuread #microsoft #microsoftsecurity #azure #cloudsecurity #cloudnative #soc #cybersecurity #MXDR #triage #investigate #respond #prevent #quarantine #mfa #asr #deception

  3. ๐ƒ๐ž๐Ÿ๐ž๐ง๐๐ž๐ซ ๐„๐ฑ๐ฉ๐ž๐ซ๐ญ๐ฌโ€™ ๐ซ๐ž๐œ๐จ๐ฆ๐ฆ๐ž๐ง๐๐š๐ญ๐ข๐จ๐ง๐ฌ ๐Ÿ๐จ๐ซ ๐ข๐ฆ๐ฉ๐š๐œ๐ญ๐Ÿ๐ฎ๐ฅ ๐ฌ๐ž๐œ๐ฎ๐ซ๐ข๐ญ๐ฒ ๐ฉ๐จ๐ฌ๐ญ๐ฎ๐ซ๐ž ๐ฆ๐š๐ง๐š๐ ๐ž๐ฆ๐ž๐ง๐ญ

    The Microsoft Defender Experts for XDR service provides value to customers from both a proactive and reactive perspective.

    While the basics of security hygiene, such as patching, inventory, security baselining, and least privilege delegations are undeniably important, once those bases are covered there are many more specific controls that receive less attention but can be critical in mitigating the frequency and impact of future incidents.

    Top Configuration Recommendations:

    Defender for Office 365

    โžก Restrict user ability to release emails from quarantine

    Defender for Endpoint

    โžกEnable tamper protection

    โžกEnable network protection in block mode

    โžกBlock untrusted and unsigned processes that run from USB

    โžกBlock JavaScript or VBScript from launching downloaded executable content

    โžกBlock executable content from email client and webmail

    Entra ID

    โžกEnsure multifactor authentication (MFA) is enabled for all users in administrative roles in Entra ID

    โžกRequire MFA for self-service password reset (SSPR)

    Defender for Identity

    โžกSet a honeytoken account

    techcommunity.microsoft.com/t5

    #defender #experts #xdr #edr #mde #mdi #mdo #entraid #azuread #microsoft #microsoftsecurity #azure #cloudsecurity #cloudnative #soc #cybersecurity #MXDR #triage #investigate #respond #prevent #quarantine #mfa #asr #deception

  4. ๐ƒ๐ž๐Ÿ๐ž๐ง๐๐ž๐ซ ๐„๐ฑ๐ฉ๐ž๐ซ๐ญ๐ฌโ€™ ๐ซ๐ž๐œ๐จ๐ฆ๐ฆ๐ž๐ง๐๐š๐ญ๐ข๐จ๐ง๐ฌ ๐Ÿ๐จ๐ซ ๐ข๐ฆ๐ฉ๐š๐œ๐ญ๐Ÿ๐ฎ๐ฅ ๐ฌ๐ž๐œ๐ฎ๐ซ๐ข๐ญ๐ฒ ๐ฉ๐จ๐ฌ๐ญ๐ฎ๐ซ๐ž ๐ฆ๐š๐ง๐š๐ ๐ž๐ฆ๐ž๐ง๐ญ

    The Microsoft Defender Experts for XDR service provides value to customers from both a proactive and reactive perspective.

    While the basics of security hygiene, such as patching, inventory, security baselining, and least privilege delegations are undeniably important, once those bases are covered there are many more specific controls that receive less attention but can be critical in mitigating the frequency and impact of future incidents.

    Top Configuration Recommendations:

    Defender for Office 365

    โžก Restrict user ability to release emails from quarantine

    Defender for Endpoint

    โžกEnable tamper protection

    โžกEnable network protection in block mode

    โžกBlock untrusted and unsigned processes that run from USB

    โžกBlock JavaScript or VBScript from launching downloaded executable content

    โžกBlock executable content from email client and webmail

    Entra ID

    โžกEnsure multifactor authentication (MFA) is enabled for all users in administrative roles in Entra ID

    โžกRequire MFA for self-service password reset (SSPR)

    Defender for Identity

    โžกSet a honeytoken account

    techcommunity.microsoft.com/t5

    #defender #experts #xdr #edr #mde #mdi #mdo #entraid #azuread #microsoft #microsoftsecurity #azure #cloudsecurity #cloudnative #soc #cybersecurity #MXDR #triage #investigate #respond #prevent #quarantine #mfa #asr #deception

  5. ๐ƒ๐ž๐Ÿ๐ž๐ง๐๐ž๐ซ ๐„๐ฑ๐ฉ๐ž๐ซ๐ญ๐ฌโ€™ ๐ซ๐ž๐œ๐จ๐ฆ๐ฆ๐ž๐ง๐๐š๐ญ๐ข๐จ๐ง๐ฌ ๐Ÿ๐จ๐ซ ๐ข๐ฆ๐ฉ๐š๐œ๐ญ๐Ÿ๐ฎ๐ฅ ๐ฌ๐ž๐œ๐ฎ๐ซ๐ข๐ญ๐ฒ ๐ฉ๐จ๐ฌ๐ญ๐ฎ๐ซ๐ž ๐ฆ๐š๐ง๐š๐ ๐ž๐ฆ๐ž๐ง๐ญ

    The Microsoft Defender Experts for XDR service provides value to customers from both a proactive and reactive perspective.

    While the basics of security hygiene, such as patching, inventory, security baselining, and least privilege delegations are undeniably important, once those bases are covered there are many more specific controls that receive less attention but can be critical in mitigating the frequency and impact of future incidents.

    Top Configuration Recommendations:

    Defender for Office 365

    โžก Restrict user ability to release emails from quarantine

    Defender for Endpoint

    โžกEnable tamper protection

    โžกEnable network protection in block mode

    โžกBlock untrusted and unsigned processes that run from USB

    โžกBlock JavaScript or VBScript from launching downloaded executable content

    โžกBlock executable content from email client and webmail

    Entra ID

    โžกEnsure multifactor authentication (MFA) is enabled for all users in administrative roles in Entra ID

    โžกRequire MFA for self-service password reset (SSPR)

    Defender for Identity

    โžกSet a honeytoken account

    techcommunity.microsoft.com/t5

    #defender #experts #xdr #edr #mde #mdi #mdo #entraid #azuread #microsoft #microsoftsecurity #azure #cloudsecurity #cloudnative #soc #cybersecurity #MXDR #triage #investigate #respond #prevent #quarantine #mfa #asr #deception