QuestionQ92

MFA and IDAAS Configuration Basics

How can a Conditional Access policy stop a threat actor from using a privileged account?

  • A Automatically reset privileged account passwords every 30 days
  • B Prevent users from logging in outside business hours
  • C Require multi-factor authentication when a privileged account is used from an endpoint outside the user's baseline
  • D Audit RDP to identity unusual access by privileged users
Explanation

Microsoft Entra Conditional Access can combine sign-in signals with access controls such as requiring multifactor authentication. Sign-ins with unfamiliar properties, including a device or other endpoint outside the user’s normal baseline, can be treated as risky; requiring MFA prevents access when the actor cannot complete the additional verification.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!