Office 365 Security Monitoring
Office 365 Security Monitoring
Office 365 Security Monitoring is a managed security product that monitors Office 365 activity using AI analytics platform, SIEM, threat intelligence, and 24/7 365 Security Operations Center to identify threat-like behavior such as unauthorized access to cloud mailboxes, admin changes in the environment, impossible logins, and brute force attacks.
- MALICIOUS ADMIN CHANGES - Tracks admin activity and changes to the O365 tenant
- UNAUTHORIZED DELEGATE ACCESS - Tracks when emails delegates are added
- FAILED OR UNAUTHORIZED ACCESS - Detects failed or suspicious login attempt
- MFA REMOVAL - Actively detects changes to MFA
- FOREIGN LOGIN - Monitors geolocation access with IP location sourcing and login from suspicious or unusual countries
- IMPOSSIBLE LOGIN - Detects logins from different geolocations within a short period of time
- SUSPICIOUS EMAIL FORWARD - Alerts when email forwarding rules have been created outside of the domain