From the course: Windows Server Hybrid Administrator Associate (AZ-801) Cert Prep: 1 Secure Windows Server On-Premises and Hybrid Infrastructures

Unlock the full course today

Join today to access over 24,900 courses taught by industry experts.

Implement and manage Microsoft Defender for Identity

Implement and manage Microsoft Defender for Identity

- [Instructor] Microsoft Defender for Identity monitors your domain controllers by capturing network traffic and alerting to security events directly from your domain controllers. It then analyzes that data for attacks and threats and it learns about your network and warns you of suspicious activities. This product used to be called Advanced Threat Protection and it's a completely on-premises installation so you would install it on your domain controllers or you would install it onto a centralized server and it was a product that you could purchase, but now it's only a product you can rent. So it's another one of the many Azure Cloud services and it's now Cloud managed. However, the installation is still on the domain controllers themselves and then they report back using what's called sensors into the Azure Cloud at Microsoft Defender for Identity. Let's take a look at how this is all set up. So there's two different ways…

Contents