DXN Code Strike the security policy environment
DXN Code Strike the
security policy environment So what I've done over here is build a very simple
query. I filtered on? What were the mails that were detected by malicious URL
reputation system and that group the Mail by sender domain so it's giving me a
very easy way of saying where am is my organization, getting attacked from in
this demo tenant of obviously we're seeing a lot of fish males come through
from gmail.com. But you can now use this tool to get a sense of how is what is
the security posture? However, getting attack into my organization? But In
addition to that what we have done is again in partnership with one of our key
customers. We've gone ahead and built this power. BI dashboard where what we're
doing is all the data that we have inside the product. We're exposing that
through PowerShell and through APIs, which you can pull through across and then
stitch together this power. BI dashboard to answer some more questions
DXN Code Strike Reviews built
a funnel view of as emails are coming in you know what is the effect efficacy
of the filters. Hotmail is flowing through into into my organization and then
what is a disposition of those mails inside my organization are they getting
blocked on the edge? Is it landing my quarantine folder or users. I said,
Infusers Junk Mail folder for each of the filter. So it gives you a sense of
what threats are residing where in your organization. The next report we built
is of course, we took all the senders and classified and then group them by the
different detection. Tech that is catching them so you can understand who's
sending what kind of attacks into your organization. am I getting fish attacks
on a particular part of the world or a particular domain so you can decide your
block strategies accordingly. The next part and this is a very key ask we get
from a lot of customers is Hey? How do I know who is the most targeted
individual in my organization So what we're doing with this report is showing
you will make it. Of course, you pull the data out of Office 365 and then join
that with your identity data, possibly Azure Active
Comments
Post a Comment