Active Directory Analysis
A security configuration review of Active Directory, including identity, privilege, authentication, legacy protocols and common attack paths.
Know when to bring this work into the program.
Use this analysis when on-premises identity remains important, after an acquisition or provider transition, or before an internal penetration test.
A scope built around the risk.
A security configuration review of Active Directory, including identity, privilege, authentication, legacy protocols and common attack paths.
- Privileged groups, delegation and administrative pathways
- Authentication protocols and legacy settings
- Password, lockout and machine-account controls
- Trusts, service accounts and common lateral-movement paths
Useful output for the people who must act.
- Configuration and identity risk findings
- Prioritized hardening recommendations
- Identification of attack paths requiring deeper testing
- Technical guidance for internal IT or the MSP
A process designed for active directory analysis.
Map identity paths
Begin with privileged groups, delegation and administrative pathways and confirm the systems, people and evidence needed to answer the client’s specific questions.
Review authentication
Review authentication protocols and legacy settings. Then evaluate password, lockout and machine-account controls to determine whether the relevant controls operate as intended.
Validate attack routes
Assess trusts, service accounts and common lateral-movement paths and connect the result to credible security, operational and business impact.
Prioritize hardening
Provide configuration and identity risk findings and prioritized hardening recommendations, then align responsible parties around the next actions.
Move from activity to clarity.
Can a standard user move toward privileged access?
To answer this, Elteni analyzes privileged groups, delegation and administrative pathways together with authentication protocols and legacy settings. The client receives configuration and identity risk findings, with the evidence, context and next steps needed to act.
Are legacy protocols exposing credentials?
To answer this, Elteni analyzes authentication protocols and legacy settings together with password, lockout and machine-account controls. The client receives prioritized hardening recommendations, with the evidence, context and next steps needed to act.
Is administrative control concentrated or poorly separated?
To answer this, Elteni analyzes password, lockout and machine-account controls together with trusts, service accounts and common lateral-movement paths. The client receives identification of attack paths requiring deeper testing, with the evidence, context and next steps needed to act.
The result does not have to live in another report.
Relevant findings, evidence, owners and remediation status can be centralized in the Elteni Platform as part of an ongoing relationship.
Explore the Elteni Platform →