From the course: Microsoft Cybersecurity Architect (SC-100) Cert Prep by Microsoft Press

Unlock this course with a free trial

Join today to access over 25,500 courses taught by industry experts.

Design for conditional access

Design for conditional access

As we design our overall security strategy for identity, conditional access is one of the best ways to enhance that security. There's many ways to structure these policies for conditional access. One approach is to structure the policies based on the sensitivity of the resource that's being accessed. In practice, this approach can be difficult to implement in a way that still protects access to resources from various users. Another way to structure conditional access policies is based on the persona of the identity of the user account that's trying to access an application. This could be administrators with access to the Azure portal or any of the Office 365 portals. This can be developers that have unique needs to develop databases or networking or service accounts and users that have special access to special resources. The idea when designing a conditional access policy is to combine the persona with group membership and create the…

Contents