Skip to content

Commit 5fcd248

Browse files
committed
Added to the overview info about new categories
1 parent 23ca570 commit 5fcd248

File tree

1 file changed

+9
-0
lines changed

1 file changed

+9
-0
lines changed

ATPDocs/security-assessment.md

Lines changed: 9 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -25,6 +25,15 @@ Defender for Identity's security posture assessments are available in [Microsoft
2525

2626
Microsoft Secure Score is a measurement of an organization's security posture, with a higher number indicating more recommended actions taken. It can be found at <https://security.microsoft.com/securescore> in the [Microsoft Defender portal](/microsoft-365/security/defender/microsoft-365-defender).
2727

28+
### Categorization of MDI security posture assessments
29+
30+
For a deeper understanding of identity security risks and how to address them, Defender for Identity security posture assessments are categorized into five key areas:
31+
- **Hybrid security**: Addresses the unique challenges and security considerations of integrating on-premises and cloud-based identity systems in hybrid environments including those associated with Entra Connect.
32+
- **Identity infrastructure**: Focuses on resolving misconfigurations and vulnerabilities in core identity components, such as domain controllers.
33+
- **Certificates**: Identifies security gaps in Active Directory Certificate Services (AD CS) that could enable unauthorized access due to improper certificate management.
34+
- **Group policy**: Identifies risky Group Policy configurations that could lead to privilege escalation or lateral movement within the network, ensuring that Group Policy settings are secure and do not introduce additional risks.
35+
- **Accounts**: Covers security issues related to Active Directory (AD) users, devices, and groups such as old passwords, dormant accounts, and other related vulnerabilities.
36+
2837
## Access Defender for Identity security posture assessments
2938

3039
You must have a Defender for Identity license to view Defender for Identity security posture assessments in Microsoft Secure Score.

0 commit comments

Comments
 (0)