I had so much fun with Merill on this :D
Entra is sooo vast. I'm pretty sure we could talk for days about all the capabilities, pitfalls, and best practices π
Hopefully we covered some helpful things, and let us know if you have questions!
@cyberjaiant.bsky.social
Cybersecurity Consultant, Musician, Fitness Enthusiast.
I had so much fun with Merill on this :D
Entra is sooo vast. I'm pretty sure we could talk for days about all the capabilities, pitfalls, and best practices π
Hopefully we covered some helpful things, and let us know if you have questions!
If you manage Defender AV, please do not disable user UI access. This prevents the user from seeing toast notifications when Defender finds something malicious.
We want users to know when events occur so they have context when we investigate and so they can learn from mistakes :)
A screenshot of Excel in dark theme. In Excel is a random table with products and prices (it's from the linked blog post)
Excel is getting a full dark theme - even the cells! I've wanted this for so long π
techcommunity.microsoft.com/blog/microso...
ICYMI - We can now control Tamper Protection on non-Intune enrolled devices through MDE security settings management :)
This means additional protection of exclusions (if applying Disable Local Admin Merge) and ability to disable TP on a targeted device
learn.microsoft.com/...
Nice! The Security Copilot auditing powered by Microsoft Purview is now replicated in the Defender unified console.
#SecurityCopilot
Very quick video ensuring awareness of the ability to apply specific conditional access policies to M365 and Security Copilots! Can also integrate with Purview insider risk, phishing resistant authentication and more!
youtu.be/kdkwbI4R4Sc
#azure #microsoft #copilot #ai #entraid
Thanks to LLMs, I no longer have to ever relearn regex. That alone is worth $20/month.
30.11.2024 17:56 β π 507 π 52 π¬ 46 π 15πIF YOU HAVE A VPN APPLIANCE
πON YOUR NETWORK AND
πYOU DON'T HAVE 2FA OR OTHER VERIFICATION
πJUST USERNAME/PASSWORD CREDS
πYOU HAVE AN OPEN DOOR TO YOUR NETWORK
πYOU ARE GOING TO GET RANSOMWARED
I often complain about how you can't target MDE device groups with AV, Firewall, ASR rules, and other policies, especially for MDE settings management
Thanks to @Eric_K_Morrison, I created an Azure Automation to sync MDE device groups with Entra groups :)
github.com/nathanmcnult...
Today in the latest episode of the @msclouditpro.bsky.social podcast Scott and I are coming to you live from #MSIgnite. We share our thoughts on some of the latest announcements from Tuesdays keynote, especially around #Copilot - msclouditpro.com/episode389
21.11.2024 13:53 β π 4 π 2 π¬ 0 π 0Chicago view #msignite
17.11.2024 18:52 β π 12 π 1 π¬ 0 π 0Ready for ignite, as always half of my suitcase is supplements for lifting while I am there. If anyone else wants to hit the gym let me know and we can coordinate
17.11.2024 19:45 β π 1 π 0 π¬ 0 π 0Find a gap in your schedule for #MSIgnite at the last minute? Add Security Copilot to your week!
Know Before You Go: Security Copilot at Microsoft Ignite 2024 techcommunity.micros...
#SecurityCopilot
Defender for Cloud Apps has added SaaS Security Posture Management :)
learn.microsoft.com/en-us/defend...
If you already have connected apps, you can turn it on in the portal. You can also add it when connecting an app.