Identity & Access
Monitor core identity configuration such as user access model settings and directory role posture.
Product
Driftmark captures configuration snapshots across identity controls and highlights changes that affect your tenant's security posture.
Driftmark captures configuration snapshots of your Entra ID tenant and compares them over time to detect configuration drift across identity controls. Configuration drift matters because small policy or role changes can accumulate into material security and compliance risk.
Driftmark monitors identity control families as a system, not isolated features, so your team can see the broader impact of configuration change.
Monitor core identity configuration such as user access model settings and directory role posture.
Track changes across security-relevant policy configuration including conditional access and policy controls.
Observe privileged role management settings, eligible/active role posture, and assignment changes over time.
Capture governance-related configuration for lifecycle, access controls, and identity governance policy areas.
Review app and service principal configuration including permission posture and identity-related app settings.
Track guest and external access configuration that affects cross-tenant collaboration and external exposure.
Driftmark captures the state of identity configuration at a point in time using Microsoft Graph. Snapshots help security teams understand how configuration evolves, when changes occurred, and what controls were affected.
Snapshot Summary
CompletedCaptured May 15, 2026
Drift Detection
Driftmark compares snapshots to identify configuration drift between states. Examples include Conditional Access policy changes, privileged role assignments, application permission changes, and external access configuration updates.
Driftmark generates reports summarizing current configuration state and detected drift between snapshots. These reports support security reviews, compliance assessments, and incident investigations.
Audit-Ready Report
Tenant posture summary and configuration drift
Driftmark interacts with Microsoft Graph using read-only permissions aligned to least privilege principles. The platform provides configuration visibility without modifying tenant settings and accesses only the configuration metadata required for monitoring and reporting.
Monitor configuration drift across critical identity controls.
Track configuration state during assessments and remediation projects.
Monitor tenant configuration across customer environments.
Driftmark uses Microsoft Graph read-only permissions required to access identity configuration metadata.
No. Driftmark is designed for visibility and drift detection and does not write or change tenant configuration.
Snapshots are captured on your configured schedule, enabling recurring visibility into configuration changes.
Driftmark covers identity and access, security policies, privileged access, identity governance, applications, and external collaboration controls.