Mitigating Risks
BarracudaONE identifies security risks in your environment.
Each risk includes the criteria that triggered it, the steps to resolve it, and a detailed explanation of the potential exposure in your environment.
If the risk affects specific elements of your environment, such as users, accounts, or devices, you can find these elements at the bottom of the page with more detailed information.
To mitigate these risks, address the causes in your environment.
Types of risks
BarracudaONE identifies different catagories of risks:
AI risks - Unauthorized and high-risk AI tool use.
Microsoft Entra ID risks - Unmanaged devices, the number of administrators, and the enforcement of Multi-Factor Authentication (MFA).
For more information, see below.
AI risks
Unauthorized use of AI can put privacy, data, and business decisions in danger.
BarracudaONE identifies these AI risks:
No tool for AI usage monitoring - See https://documentation.campus.barracuda.com/wiki/spaces/ONE/pages/579239974.
Uncontrolled AI tool usage (Shadow AI) - See https://documentation.campus.barracuda.com/wiki/spaces/ONE/pages/578584633.
High-risk AI tools in use - See https://documentation.campus.barracuda.com/wiki/spaces/ONE/pages/578715685.
When you address the issues causing the risk, BarracudaONE automatically resolves the risk after the next scan.
Microsoft Entra ID risks
Protecting your network by enforcing strong authentication and good security practices keeps your data, people, and business safer.
If you have integrated Microsoft Entra ID, BarracudaONE identifies security risks in your environment.
If you don't have Microsoft Entra ID set up, you won't see the risk assessment in your environment. To set up Microsoft Entra ID, see https://documentation.campus.barracuda.com/wiki/spaces/ONE/pages/461832322.
When you address the issues causing the risk, BarracudaONE automatically resolves the risk after the next Entra ID scan.
BarracudaONE can identify these risks:
Privileged accounts without strong MFA - See https://documentation.campus.barracuda.com/wiki/spaces/ONE/pages/579174426.
Unmanaged device access allowed - See https://documentation.campus.barracuda.com/wiki/spaces/ONE/pages/578584656.
MFA not enabled for some users - See https://documentation.campus.barracuda.com/wiki/spaces/ONE/pages/578584656
Phishing-resistant MFA not enforced for all users - See https://documentation.campus.barracuda.com/wiki/spaces/ONE/pages/578224246.
Excessive global administrator accounts - See https://documentation.campus.barracuda.com/wiki/spaces/ONE/pages/578715714.