The Active Directory (AD) is a legacy tool that is a priority target for attackers due to its dominant position in the market. It also lacks the ability to detect anomalous configurations, and its interdependence with other information systems often creates vulnerabilities that attackers exploit to move laterally within an organization's IT infrastructure.
Telefónica Tech offers ITDR (Identity Threat Detection & Response) technologies, as well as a team of experts who operate the service from the SOC (present in 12 locations). Analysts investigate, respond, and report on detected threats, advise on risk mitigation due to poor AD configurations or compromised credentials, and propose prevention automation based on dynamic risk conditions.