Managed ITDR

MDR for Microsoft 365
VPN Device Suppression - Alert/Report for Devices without Huntress Installed
Hi, its great the device suppression option has been added for vpn escalations. However based on the wording below I have some concerns. Concern: Compliant devices: Suppresses unexpected country and VPN escalations (Default: ON) Entra Joined / Hybrid Joined: Suppresses unexpected country and VPN escalations (Default: ON) Entra Registered (BYOD tier): Suppresses unexpected country and VPN escalations (Default: OFF) If a hacker somehow managed to gain access to the end users credentials, they technically could have the ability to Entra Join a device (depending on security configurations). Whilst I appreciate eventually Huntress will likely pickup the compromised account based on other actions in the M365 tenant, its still a concern in the short term. Request: Given Huntress has the ability to interrogate Intune, I would assume it then has the ability to also interrogate the discovered apps. From this, would it be possible to request that if any of these are turned on, then we have the ability within Huntress to enable a report/setting which flags to us at certain intervals that if a device is "joined and/or registered" in Intune and does not have the huntress agent installed, then Huntress will generate an alert or report? Intent: If a hacker manages to somehow join their device and block Huntress from being installed on their device, then Huntress (at a scheduled interval) will flag there is a device in the M365 environment which doesn't have Huntress installed which could be seen as a red flag or an opportunity to see why Huntress failed to install.
0
·
Unwanted Access…
ITDR Onboarding Overhaul
## Problem Bringing a new M365 tenant under Managed ITDR is the first step of every partner-client relationship. Partners need that process to be fast, predictable, and visible — they need to see exactly where each tenant is in onboarding, get an accurate signal when something requires their attention, and minimize the time they spend manually walking each tenant through setup. Partners running ITDR across dozens or hundreds of tenants also need a single place to monitor onboarding progress without checking each integration individually. As Huntress expands Identity protection beyond ITDR, partners also need a simple path to add additional Identity products to a tenant they've already authorized — without restarting onboarding from scratch. ## What We're Doing About It We've rebuilt the ITDR onboarding flow with the partner experience at the center. Partners see clear status as each tenant moves through onboarding. Common errors are automatically corrected, and when partner action is required, we send a specific, actionable notification. The new onboarding flow also supports adding additional Identity products to an existing tenant as a one-click action. ## Impact The manual steps a partner walks through to onboard a tenant take roughly two minutes; the remaining onboarding work completes in the background. Real-time visibility into the status of every tenant being onboarded. Common onboarding errors are auto-resolved; the rest come with a clear, action-specific notification. Additional Identity products can be added without re-authorizing the entire tenant.
15
·
in progress
Load More