Team: Managed Identity Threat Detection and Response (ITDR)
Product: Google Workspace, Microsoft 365
Summary: Comparing the difference between features available in ITDR for Microsoft 365 compared to Google Workspace. This is for Early Access only, and we'll be announcing our GA date as soon as possible.
Depending on the ITDR feature you are utilizing certain features may be limited or otherwise not available.
Google Workspace is our newest feature and is in development. Stay tuned as new features for the product release!
| ITDR Feature Matrix | ||
| Feature | ITDR for Google Workspace | ITDR for Microsoft 365 |
| Unexpected Login Escalations | ✅ | ✅ |
| Unwanted Access Configuration Rules | ✅ | ✅ |
| Malicious Inbox Rule Detection | ✅ | ✅ |
| Revoke Identity | ✅ | ✅ |
| Malicious Datacenter Utilization | ✅ | ✅ |
| Student License Exclusions | ✅ | ✅ |
| Audit Log Ingest into Huntress SIEM | ✅ | ✅ |
| Rogue Apps Detections | ❌ | ✅ |
| Credential Theft Detection | ❌ | ✅ |
| Token Theft Detection | ❌ | ✅ |
| AiTM Detection | ❌ | ✅ |
| Data Exfiltration Timeline | ❌ | ✅ |
| Identity Isolation* | ❌ | ✅ |
*Identity Isolation features in Microsoft 365 are dependent upon if the environmental setup is Hybrid or fully in the Cloud, and if a Huntress agent is detected on the Domain Controller or not. See our ITDR isolation guide for Microsoft 365 and our ITDR isolation guide for Google Workspace for more details
*Identity Isolation for Google Workspace is not currently available as suspending an account will break access to many applications within Google and will likely prove overly aggressive. If you wish to see this in the future, please submit a feature request.