Getting Started: Microsoft Entra ID

Introduction
Recorded Future Identity Intelligence enables security and IT teams to detect identity compromises.

Recorded Future automates the collection, analysis, and production of identity intelligence from a vast range of sources.

You can incorporate identity intelligence into automated workflows that regularly monitor for compromised credentials and take immediate action using Recorded Future Identity data and Microsoft Entra ID.

 

There are many ways organizations can utilize Recorded Future Identity Intelligence. The Azure Logic Apps in this Solution provided as examples and are a quick introduction to some of those ways.

 

These playbooks include several actions that can be coordinated, or used separately.

 

They include:

  1. Ingest novel identity exposures for specified domains
  2. Adding a compromised user to an Entra ID security group
  3. Confirming high risk Microsoft Entra ID users
  4. Looking up existing users and saving the compromised user data to a Log file

 

Getting Started
For more information, prerequisites, and an installation guide please go to Microsoft Sentinel GitHub repository.

Support
Please reach out to Recorded Future Support at support@recordedfuture.com for further queries or assistance needed during the installation process.

 

This content is confidential. Do not distribute or download content in a manner that violates your Recorded Future license agreement. Sharing this content outside of licensed Recorded Future users constitutes a breach of the terms and/or agreement and shall be considered a breach by your organization.
Was this article helpful?
1 out of 1 found this helpful

Articles in this section

See more