Configuration Change – Defender for Cloud Apps: Threat protection built in discovery anomaly detection

Defender for Cloud Apps is reassessing our built-in threat protection policies. On March 27, two of these policies (Cloud Discovery anomaly detection and Data exfiltration to an app that is not sanctioned) will be turned off by default for all tenants.

Note: After March 27, if you wish to not follow the recommended default setting, you will still be able to turn these policies on from the policies section in the portal, as well as continue reviewing the relevant data in the Discovery section.

How this will affect your organization:

Your organization will stop receiving the mentioned types of alerts.

What you need to do to prepare:

Review, and assess the policies and decide how your organizations wants to proceed.

Learn more:

Message ID: MC321241


No comments yet

Leave a Reply


I've been working with Microsoft Technologies over the last ten years, mainly focused on creating collaboration and productivity solutions that drive the adoption of Microsoft Modern Workplace.

%d bloggers like this: