tag

entra-id

7 indexed skills · max 10 per page

skills (7)

auditing-azure-active-directory-configuration

mukul975/Anthropic-Cybersecurity-Skills · auditing-azure-active-directory-configuration

0

Auditing Microsoft Entra ID (Azure Active Directory) configuration to identify risky authentication policies, overly permissive role assignments, stale accounts, conditional access gaps, and guest user risks using AzureAD PowerShell, Microsoft Graph API, and ScoutSuite.

implementing-azure-ad-privileged-identity-management

mukul975/Anthropic-Cybersecurity-Skills · implementing-azure-ad-privileged-identity-management

0

Configure Microsoft Entra Privileged Identity Management to enforce just-in-time role activation, approval workflows, and access reviews for Azure AD privileged roles.

detecting-azure-service-principal-abuse

mukul975/Anthropic-Cybersecurity-Skills · detecting-azure-service-principal-abuse

0

Detect and investigate Azure service principal abuse including privilege escalation, credential compromise, admin consent bypass, and unauthorized enumeration in Microsoft Entra ID environments.

building-identity-federation-with-saml-azure-ad

mukul975/Anthropic-Cybersecurity-Skills · building-identity-federation-with-saml-azure-ad

0

Establish SAML 2.0 identity federation between on-premises Active Directory and Azure AD (Microsoft Entra ID) for seamless cross-domain authentication and SSO to cloud applications.

detecting-azure-lateral-movement

mukul975/Anthropic-Cybersecurity-Skills · detecting-azure-lateral-movement

0

Detect lateral movement in Azure AD/Entra ID environments using Microsoft Graph API audit logs, Azure Sentinel KQL hunting queries, and sign-in anomaly correlation to identify privilege escalation, token theft, and cross-tenant pivoting.

detecting-oauth-token-theft

mukul975/Anthropic-Cybersecurity-Skills · detecting-oauth-token-theft

0

Detects and responds to OAuth token theft and replay attacks in cloud environments, focusing on Microsoft Entra ID (Azure AD) token protection, conditional access policies, and sign-in anomaly detection. Covers access token theft, refresh token replay, Primary Refresh Token (PRT) abuse, and pass-the-cookie attacks. Activates for requests involving OAuth token theft detection, token replay prevention, Azure AD conditional access token protection, or cloud identity attack investigation.

implementing-conditional-access-policies-azure-ad

mukul975/Anthropic-Cybersecurity-Skills · implementing-conditional-access-policies-azure-ad

0

Configure Microsoft Entra ID (Azure AD) Conditional Access policies for zero trust access control. Covers signal-based policy design, device compliance requirements, risk-based authentication, named l