17
Securing Office 365 for free

Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

  • Upload
    others

  • View
    14

  • Download
    0

Embed Size (px)

Citation preview

Page 1: Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

Securing Office 365 for free

Page 2: Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

Office 365Threat LandscapeHow are the bad guys attacking you?

2

Page 3: Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

Threat Landscape

Attackers are focusing on people, not technology

» Password spraying

» Brute force login attempts

» Phishing/Social Engineering

» Misconfigured services

Page 4: Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

Protecting IdentitiesBecause you can’t install antivirus on your users.

Page 5: Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

Multifactor AuthenticationYes, it’s that important.

Available Methods:

» Random code

» Push notification

» Phone call/Text

» Smart card» Biometric device

Available to all license levels. Azure AD Premium unlocks advanced features.

Page 6: Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

Risky sign-in reportWhy did Sara log in from Virginia this morning and Nigeria tonight?

Available to all license levels. Azure AD Premium unlocks advanced features.

Page 7: Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

License Level Comparison

Free and Basic Editions

Azure AD Premium

Page 8: Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

Protecting DataAre users giving away your sensitive documents?

Page 9: Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

Default SharePoint permissionsOh yea, I forgot about that.

Available Methods:

Available to all license levels.

Page 10: Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

Protecting EmailWhere does all this spam come from, anyway?

Page 11: Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

Tweaking the spam filterA tragically unused option.

Available Options:

Available to all license levels.

Page 12: Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

External email banner

Available to all license levels.

Page 13: Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

“Advanced” DNS configSPF, DKIM and DMARC, oh my!

Available to all license levels.

» SPF – Tells the world where your email should come from.

» DKIM – Cryptographically sign each email to prove it came from you.

» DMARC – Additional checks to identify incoming spoofed emails.

Page 14: Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

Mailbox audit loggingTracing the bad guys’ steps.

Why auditing?

Enabled by default…sort of.

Get-OrganizationConfig | FL AuditDisabled

(Exchange Online Powershell)

What is audited?

Available to all license levels.

Page 15: Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

Mailbox audit loggingContinued

Default settings:

Page 16: Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

On your way to greener pastures. Questions?

16

Page 17: Securing Office 365 for free - MACUMA€¦ · Securing Office 365 for free. Office 365 Threat Landscape How are the bad guys attacking you? 2. Threat Landscape Attackers are focusing

Thank YouChris Schoenwetter

(703) 876-0300

[email protected]

networkats.com