Microsoft Defender for Identity
Identity protection

Identity Security dashboard in Microsoft Defender for Identity (Preview)

In brief

The article date and metadata were updated, an explicit dashboard heading was added, and the risky lateral movement path table entry was synchronized.

What Defender admins need to know

No administrator action is required.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

Identity Security dashboard overview (Preview)

Microsoft Defender for Identity dashboard

The Microsoft Defender for Identity Dashboard page shows data to help you better analyze your security posture, understand how well you're protected, identify vulnerabilities, and perform recommended actions.

Use the Dashboard page to view critical insights and real-time data about identity threat detection and response (ITDR). View graphs and widgets that showcase important information related to unauthorized access, account compromise, insider threats, and abnormal activities, and then proactively monitor and manage potential identity-related security risks.

Name Description
Users identified in a risky lateral movement path Indicates any sensitive accounts with risky lateral movement paths, which are windows of opportunity for attackers and can expose risks.

We recommend that you take action on any sensitive accounts found with risky lateral movement paths to minimize your risk.

For more information, see Understand and investigate lateral movement paths with Microsoft Defender for Identity.
Dormant Active Directory users Lists accounts that have been left unused for at least 180 days.

Inactive accounts that are a part of sensitive groups provide an easy path into your organization. We recommend removing those users from sensitive groups.