
SCOM 2019 supports hardening of service accounts and does not require granting the “Allow log on locally” user right for several accounts.

A detailed guide on how to configure gMSA accounts in lieu of your existing SCOM accounts is provided here.Īnother important best practice is to disable interactive and remote interactive sessions for service accounts. Group Managed Service Accounts (gMSA) has been a very popular capability because it alleviates the need for password management – now all accounts used in SCOM can be gMSA.

Here are some of SCOM’s security offerings.Ī new addition to SCOM 2019 was increasing out of the box security configuration through support for group managed service accounts (gMSA). We know that organizations have strict controls and best practices and we want to ensure that our customers have the right tools to prevent attacks and gain peace of mind. Our increased focus on customers security concerns have led us to include enhancements to many security related features in recent SCOM update rollups. Microsoft System Center Operations Manager (SCOM) offers world class monitoring capabilities and includes powerful built-in security features.

Recent high profile cyberattacks have highlighted the importance of having strong standards and features built into infrastructure monitoring and management tools.
