
Advice on IT Security Posture in Office365 Tenant
CybersecurityMicrosoftThreatProtectionAutomation
The author's company uses E5 licenses and several Microsoft security tools, including MS Defender for Business, Defender for Business Servers, Intune, Conditional Access Policies, and Defender for endpoints. The author is considering adding protection against internal threats (Inside Threat Protection) and a Security Operations Center (SOC) with a centralized logging system. They are also thinking about creating playbooks using LogicApp or PowerAutomate to act on specific alerts.