I Hear You Knocking, but You Can't Login!: An Exploration of Zero Trust With Tanium and Microsoft Entra ID
This lab will showcase a practical example of how to tie together Tanium functionality focused on the Zero Trust integration with Microsoft Entra ID. Tanium’s tie-in to Microsoft’s Entra ID allows for nearly any Tanium question to be used as a reason to block access to an endpoint. In this lab, participants will move from the overview of this process using Tanium to automatically remediate an endpoint.
Blocking logins via the Microsoft-Tanium integration with Entra ID is the start of a process to protect your enterprise, but it’s important to be able to quickly remediate the conditions which would cause a user not to be able to log in. This lab will walk through a scenario where using Automate and Enforce to remediate a condition which blocks user logins. We will also discuss how this process can be incorporated with other toolsets, like ServiceNow.
Pre-Req(s): General familiarity of Tanium functionality – Enforce Remediation. General familiarity of Microsoft Entra ID – User and Device Control.
Additional details: