Microsoft Defender for Identity in Depth: An exhaustive guide to ITDR, breach prevention, and cyberattack response
暫譯: 深入了解 Microsoft Defender for Identity:ITDR、違規預防與網路攻擊應對的全面指南
Thoor, Pierre, Zorich, Matthew
- 出版商: Packt Publishing
- 出版日期: 2024-12-20
- 售價: $1,860
- 貴賓價: 9.5 折 $1,767
- 語言: 英文
- 頁數: 380
- 裝訂: Quality Paper - also called trade paper
- ISBN: 1835884482
- ISBN-13: 9781835884485
海外代購書籍(需單獨結帳)
相關主題
商品描述
Become an MDI expert and transform your IT security with advanced identity protection strategies to safeguard against evolving cyber threats
Key Features:
- Optimize configurations for peak security performance by tailoring detection thresholds
- Leverage real-world insights and case studies to improve threat detection and response strategies
- Establish a strong ITDR defense with Microsoft Defender for Identity
- Purchase of the print or Kindle book includes a free PDF eBook
Book Description:
Written by a recognized cybersecurity expert, Microsoft Defender for Identity in Depth not only lays the groundwork for deploying and managing MDI, but also takes your knowledge to expert levels, enabling you to strengthen your organization against the most advanced cyber threats.
You'll familiarize yourself with the essentials of MDI, from seamless setup to leveraging PowerShell for automation, setting the stage for exploring advanced integrations and capabilities. Through practical, real-world examples, you'll learn how to extend MDI's reach by using APIs and conducting proactive threat hunting with KQL to turn insights into actions.
The book gradually shifts focus to operational excellence, helping you develop expertise in investigating alerts, optimizing action accounts, and troubleshooting, which will empower you to master the building and maintenance of a robust ITDR framework and strengthen your security posture.
By the end of this book, you'll be able to harness the full potential of MDI's functionalities, positioning you as a key player in your organization's cybersecurity defenses.
What You Will Learn:
- Ensure a secure and efficient MDI setup for peak defense capabilities
- Unlock automation with PowerShell scripting magic
- Seamlessly blend MDI with AD CS, AD FS, and Entra Connect
- Expand MDI's reach and impact through APIs
- Pioneer advanced threat hunting with KQL expertise in Defender XDR
- Craft expert, strategic responses to security alerts
- Optimize action accounts for maximum agility
- Establish a robust and rigid ITDR framework
Who this book is for:
If you're an IT or security professional looking to enhance your cybersecurity skills, especially in identity protection and threat management with Microsoft Defender for Identity (MDI), then this book is for you. It's perfect for system administrators, cybersecurity analysts, and cloud engineers who want to strengthen their expertise in MDI. A basic understanding of cybersecurity principles, as well as familiarity with Microsoft environments and Active Directory are recommended prerequisites for maximizing your learning experience.
Table of Contents
- Introduction to Microsoft Defender for Identity
- Setting up Microsoft Defender for Identity
- Leveraging MDI PowerShell for Automation and Management
- Integrating MDI with AD FS, AD CS, and Entra Connect
- Extending MDI Capabilities Through APIs
- Mastering KQL for Advanced Threat Detection in MDI
- Investigating and Responding to Security Alerts
- Utilizing MDI Action Accounts Effectively
- Building a Resilient Identity Threat Detection and Response Framework
- Navigating Challenges: MDI Troubleshooting and Optimization
商品描述(中文翻譯)
成為 MDI 專家,透過先進的身份保護策略轉變您的 IT 安全,以防範不斷演變的網路威脅
主要特點:
- 通過調整檢測閾值來優化配置,以達到最佳安全性能
- 利用實際見解和案例研究來改善威脅檢測和響應策略
- 使用 Microsoft Defender for Identity 建立強大的 ITDR 防禦
- 購買印刷版或 Kindle 書籍可獲得免費 PDF 電子書
書籍描述:
本書由知名的網路安全專家撰寫,《Microsoft Defender for Identity in Depth》不僅為部署和管理 MDI 打下基礎,還將您的知識提升至專家級別,使您能夠加強組織對最先進網路威脅的防禦。
您將熟悉 MDI 的基本要素,從無縫設置到利用 PowerShell 進行自動化,為探索先進的整合和功能奠定基礎。通過實際的案例,您將學習如何通過使用 API 擴展 MDI 的範圍,並使用 KQL 進行主動的威脅獵捕,將見解轉化為行動。
本書逐步轉向運營卓越,幫助您在調查警報、優化行動帳戶和故障排除方面發展專業知識,這將使您能夠掌握建立和維護強大 ITDR 框架的能力,並加強您的安全姿態。
在本書結束時,您將能夠充分利用 MDI 的功能,成為您組織網路安全防禦的關鍵角色。
您將學到的內容:
- 確保安全且高效的 MDI 設置,以達到最佳防禦能力
- 解鎖 PowerShell 腳本的自動化魔力
- 無縫整合 MDI 與 AD CS、AD FS 和 Entra Connect
- 通過 API 擴展 MDI 的範圍和影響
- 在 Defender XDR 中以 KQL 專業知識開創先進的威脅獵捕
- 為安全警報制定專業的戰略響應
- 優化行動帳戶以實現最大靈活性
- 建立堅固且穩健的 ITDR 框架
本書適合誰:
如果您是 IT 或安全專業人士,想要提升您的網路安全技能,特別是在使用 Microsoft Defender for Identity (MDI) 進行身份保護和威脅管理方面,那麼本書適合您。它非常適合系統管理員、網路安全分析師和雲端工程師,想要加強他們在 MDI 方面的專業知識。建議具備基本的網路安全原則理解,以及對 Microsoft 環境和 Active Directory 的熟悉,以最大化您的學習體驗。
目錄
- Microsoft Defender for Identity 介紹
- 設置 Microsoft Defender for Identity
- 利用 MDI PowerShell 進行自動化和管理
- 將 MDI 與 AD FS、AD CS 和 Entra Connect 整合
- 通過 API 擴展 MDI 功能
- 精通 KQL 以進行 MDI 中的先進威脅檢測
- 調查和響應安全警報
- 有效利用 MDI 行動帳戶
- 建立韌性的身份威脅檢測和響應框架
- 應對挑戰:MDI 故障排除和優化