So far, we have learned about protecting identities in the on-premises AD environment. But in a hybrid environment, identities exist in the cloud as well. These identities are mostly synced from the on-premises AD environment using Azure AD Connect. Azure AD also has cloud-only accounts. In a hybrid environment, we also need to consider protecting the identities in the cloud. Azure AD is a managed service, so we cannot apply the same features we have used in the on-premises AD environment. Also, the challenges are different. In a hybrid environment, identities appear in various cloud services such as Software as a service (SaaS), Platform as a service (PaaS), Infrastructure as a service (IaaS). Therefore, the potential for attacks is larger compared to an on-premises-only environment. In this section, we are going to learn about some services and features that we...





















































