CIO Influence
CIO Influence News Security

Semperis Enhances Hybrid Active Directory Security With New Offering For Azure AD

Semperis Enhances Hybrid Active Directory Security With New Offering For Azure AD

Semperis, the pioneer of identity-driven cyber resilience for enterprises, announced the preview release of Directory Services Protector 3.6, which simplifies managing identity security in hybrid environments that use both on-premises Active Directory and Azure Active Directory. DSPโ€™s new capabilities for detecting and remediating security risks in hybrid identity environments address the challenge organizations face in combatting the rise in attacks that enter organizations through on-premises AD, then move to the cloudโ€”or vice versaโ€”as in the SolarWinds attack.

โ€œWe see a lot of different challenges with protecting hybrid identity environments, starting with the basic fact that from a technical perspective Active Directory and Azure Active Directoryโ€”outside of the nameโ€”have very few things in common,โ€ said Semperis CEO Mickey Bresman. โ€œAzure AD provides a different stack of protocols, requiring a very different management approachโ€”including protecting the identity system from cyberattacks. With a hybrid scenario, the potential attack surface expands for an adversary. It’s a relatively common scenario to see attacks start on-prem and move to the cloud, or move from cloud to on-prem.โ€

Top IT and DevOps News:ย DevOps Institute Opens Upskilling IT 2022 Survey

In hybrid AD environments, DSP displays a single view of security indicators in both AD and Azure ADโ€”empowering IT teams to correlate changes that cross between on-premises and cloud environments and could signal an in-progress attack. In a recent 451 Research report, analyst Garrett Bekker pointed out the challenges of securing hybrid identity systems.

โ€œThe vital nature of directories has been further magnified by the ongoing migration of resources to the cloud, since each ‘cloud’โ€”whether IaaS platform or SaaS appโ€”typically has its own identity repository that applications need to work with,โ€ said Bekker. โ€œMaintaining directories in a secure state has therefore become a considerable challenge, in part because most directories are constantly in flux as new users are added or change jobs, and new applications are installed.โ€

Semperis DSP simplifies protecting hybrid AD environments by:

  • Offering a single view of pre-attack and post-attack indicators in both Active Directory and Azure Active Directory
  • Providing the ability to track near real-time changes in Azure Active Directory and conduct hybrid searches across both on-premises Active Directory and Azure AD
  • Illustrating actions that begin on premises and extend to Azure AD
  • Generating a risk profile mapped to the MITRE ATT&CK and other security frameworks
  • Continuously assessing and improving hybrid AD security posture to defend against attacks

Top Security News:ย Cloudflare Announces R2 Storage Rapid and Reliable S3-Compatible Object Storage Designed for the Edge

In conjunction with the Directory Services Protector 3.6 release, Semperis is publishing a new whitepaper that addresses the serious challenges in securing a hybrid Active Directory environment, โ€œSecuring Hybrid Active Directory Environments: A Practical Guide to Closing Security Gaps in Active Directory and Azure Active Directoryโ€. Written by Doug Davis, Semperis Senior Product Manager, this resource helps organizations defend the expanded attack surface that comes with a hybrid identity environment.

In addition to providing end-to-end threat protection for hybrid AD environments, Directory Services Protector offers frequent security indicators on a continuous release cycle to address threats uncovered by the Semperis research team or in response to threats that surface externally. Recent releases resulting from the Semperis research teamโ€™s proprietary work include indicators for the Windows Print Spooler critical vulnerability (PrintNightmare) andย PetitPotam, which can allow an attacker to gain full Domain Admin permissions in an organization.

Top iTechnology Networking News:ย FireMon Extends Network Security Policy Management Leadership for Hybrid Cloud Environments

[To share your insights with us, please write toย sghosh@martechseries.com]

Related posts

Pure Storage FlashBlade Enables DC BLOX to Offer Critical Storage Infrastructure Capabilities, Continue Expansion of Data Centers Across Southeastern U.S.

CIO Influence News Desk

Palo Alto Networks Named CNAPP Company of the Year by Frost & Sullivan for Its Comprehensive, Purpose-built Security Solutions and Market-leading Position

PR Newswire

ZoomInfo Partners With Beyond Codes To Provide Best-In-Class Intelligence To India And East Asia

CIO Influence News Desk

Leave a Comment