Configuration Change – Defender for Cloud Apps: Threat protection built in discovery anomaly detection
Defender for Cloud Apps is reassessing our built-in threat protection policies. On March 27, two of these policies (Cloud Discovery anomaly detection and Data exfiltration to an app that is not sanctioned) will be turned off by default for all tenants.
Note: After March 27, if you wish to not follow the recommended default setting, you will still be able to turn these policies on from the policies section in the portal, as well as continue reviewing the relevant data in the Discovery section.
How this will affect your organization:
Your organization will stop receiving the mentioned types of alerts.
What you need to do to prepare:
Review, and assess the policies and decide how your organizations wants to proceed.
Learn more:
- Working with discovered apps in Defender for Cloud Apps
- Policies can be reenabled here
Message ID: MC321241
No comments yet