Skip to content
Backup and Recovery, Data Security

The Resilience Rundown Podcast: Navigating Active Directory Threats and Protections

Commvault Field CTO Dan Conrad shares his insights.


O CTO de campo e tecnólogo principal da Commvault, Dan Conrad, participou do episódio 12 do podcast The Resilience Rundown para conversar com o apresentador Thomas Bryant sobre o Active Directory. Dan tem mais de duas décadas de experiência com o Active Directory.

Ameaças comuns ao AD

Thomas mentioned that many people in the industry tend to overlook authentication and Active Directory when they’re planning for cyber incidents. Dan agreed that the most common threats haven’t changed over his career and tend to boil down to people, processes, and mentalities.

Ele compartilhou que a forma como o Active Directory era administrado anteriormente era falha e os administradores criavam situações perigosas ou exploráveis ao executar tudo na rede e fazer tudo com credenciais de administrador.

A natureza de logon único do Active Directory, disse Dan, torna-o muito fácil de usar para usuários e administradores, mas deixamos rastros por onde quer que passemos. E esses rastros podem ser explorados por invasores. Ele citou muitos exemplos de violações resultantes do comprometimento das credenciais de um único usuário.

Maior segurança

Ao longo dos anos, administradores como Dan fizeram avanços nas práticas de segurança, como gerenciar sua conta regular separadamente de sua conta de administrador e usar soluções de gerenciamento de acesso privilegiado.

“That’s much more efficient from a security perspective because every time I’m done using it, I check it back in and it changes the password, which nullifies all those hashes I just left across the network so that they can’t be exploited,” he said.

He also mentions the need to be careful about giving out credentials just because someone asks – and keep an eye on third-party domain trust relationships that can put systems at risk.

Melhores práticas

Thomas perguntou sobre outras práticas recomendadas para proteger o Active Directory contra ameaças, além da separação de funções e do PAM. Dan mencionou a aplicação de patches, levando em conta o impacto nas aplicações legadas. Ele também destacou que o mais importante é saber tudo o que for possível sobre o Active Directory.

“That’s sort of my mentality, that safety net, that you think you know how to detect, you think you know how to patch, you think you know how to do all this stuff,” Dan said. “But if you can’t recover, none of that really matters because there’s going to be something you didn’t know about.”

Papel do backup e da recuperação

Thomas’ question on the role of backup and recovery in terms of protecting Active Directory prompted Dan to recall some sticky situations from the past. However, he also mentioned that “the other side of that is having the ability to recover at a granular level, is sort of a very relaxing feeling.”

Assista ao podcast completoSaiba mais no SHIFT 2025para ver o restante da conversa.

More related posts


Thumbnail_Blog-Tabletop-Exercise-2026

SaaS Matters – Enterprise Support Made Possible by Clumio

Read more about SaaS Matters – Enterprise Support Made Possible by Clumio
Thumbnail_Blog-QTFY-Advisory-2026

The QTFY Advisory Is More Than a Threat Warning. It Is a Readiness Test.

Read more about The QTFY Advisory Is More Than a Threat Warning. It Is a Readiness Test.
Thumbnail_Blog-Clumio-S3-Backup-2026

Configuring S3 Backup and Recovery with Clumio

Read more about Configuring S3 Backup and Recovery with Clumio