Security analysis with Microsoft Advanced Threat Analytics

Oct. 8, 2017 0 comments ADMIN Magazine Encryption & Authentication firewall

Microsoft Advanced Threat Analytics (ATA) is an extension of the Enterprise Mobility Suite (EMS). The purpose of this on-premises system is to detect suspicious activities on the network that potentially stem from attackers. ATA's focus is attacks on user login data, which explains why the software keeps a close eye on Active Directory (AD) domain controllers. The service is not designed just to protect endpoints such as smartphones or tablets, but also internal networks in Active Directory trees and in Microsoft Azure and Azure Active Directory. In releasing ATA, Microsoft aims to give enterprises a tool that will protect networks against attacks through a variety of attack vectors. In most companies, users can access the enterprise data with an increasing number of devices and connections. Only a centralized tool like ATA is capable of keeping track of all these devices and detecting attacks quickly. Setting up the tool is very easy; the network is analyzed immediately after its i...

http://www.admin-magazine.com/Archive/2016/32/Security-analysis-with-Microsoft-Advanced-Threat-An...