News

Microsoft Adds Auto-Remediation to SaaS Security Tool

Microsoft this week announced the addition of an auto-remediation capability to its Cloud App Security service, enabling administrators to compel user log-ins and invalidate user sessions in response to certain kinds of security threats.

The Cloud App Security service, which launched commercially last year, tracks the use of Software as a Service (SaaS) applications by end users in an organization. It ranks SaaS applications so that IT departments can better assess their risks.

The service is based on Adallom technology that Microsoft acquired when it bought that company about two years ago.

The Cloud App Security service will detect things like the sharing or downloading of sensitive files from atypical locations, which will send an alert to the management portal. With the auto-remediation feature addition, it's now possible for IT pros to specify certain actions to take when such threats are detected.

For instance, IT pros can set the service to revoke "all user sessions." Next, they can require end users to log back into their Office 365 or Azure Active Directory accounts.

The auto-remediation feature also permits IT pros to revoke the sessions associated with a compromised account by "invalidating all the user's refresh tokens." The security practice of simply disabling an account in such cases isn't sufficient to ward off attackers, Microsoft's announcement contended.

To use the Cloud App Security service, organizations need an Office 365 subscription plan that has support for the Azure Rights Management service, namely the E3, E4 and E5 plans, as well as corresponding Education and Government plans. For a list of Office 365 plans with Azure Rights Management support, see this Microsoft .PDF.

About the Author

Kurt Mackie is senior news producer for 1105 Media's Converge360 group.

Featured

  • An image of planes flying around a globe

    2025 Microsoft Conference Calendar: For Partners, IT Pros and Developers

    Here's your guide to all the IT training sessions, partner meet-ups and annual Microsoft conferences you won't want to miss.

  • Microsoft to Shut Down Skype Services

    Microsoft will discontinue its Skype telecommunications and video calling services on May 5, 2025, marking the end of the platform's decades-long run.

  • Big Blue To Acquire Datastax in Enterprise AI Play

    In a bid to bolster its enterprise-aimed AI capabilities, IBM is planning to acquire Datastax, a leading AI and data solutions provider, for an undisclosed amount.

  • Microsoft Confirms End of HoloLens Mixed Reality Hardware

    Microsoft officially announced this week that it is discontinuing its HoloLens mixed reality hardware, marking the end of its efforts in the space.