Building a Modern Privileged Access Strategy
Learn how to build a modern privileged access strategy by combining Trust Levels, Privileged Access Workstations, phishing-resistant authentication, Conditional Access, PIM and...
Showing all posts in Entra.
Learn how to build a modern privileged access strategy by combining Trust Levels, Privileged Access Workstations, phishing-resistant authentication, Conditional Access, PIM and...
Learn how to harden a modern Privileged Access Workstation using Microsoft Intune, Microsoft Defender, Conditional Access, PIM and Windows security features to build a trusted a...
Explore how Virtual Privileged Access Workstations (vPAWs) provide a secure and practical alternative to physical PAWs by balancing administrative assurance with operational fle...
Discover why dedicated physical Privileged Access Workstations remain the highest assurance option for protecting privileged identities and securing administrative environments.
Discover when a Privileged Access Workstation is justified, how to assess administrative risk, and why workstation assurance should reflect the level of trust placed in an ident...
Discover what a Privileged Access Workstation (PAW) is, why it matters, and how it strengthens privileged identity security by protecting the administrative trust boundary.
An introduction to Privileged Access Workstations (PAWs), why they matter, and how they fit into a modern privileged identity strategy using Microsoft Entra.
Traditional administrative tiering was built for an infrastructure-centric world. As organisations move to cloud-native identities, Zero Trust and passwordless authentication, t...
Passkeys are transforming authentication, but the technology is not the hardest part. Learn why onboarding, bootstrapping, Temporary Access Passes (TAPs), Conditional Access and...
Passkeys are rapidly becoming the preferred authentication method across Microsoft 365 and beyond, but not all passkeys are created equal. From synced passkeys in Apple Password...
Most organisations think their phishing-resistant authentication journey starts with passkeys. In reality, many have already deployed one of the most important phishing-resistan...
Most Microsoft 365 tenants don’t lack tools, they lack visibility. This sample enterprise audit report shows how to uncover risk, simplify access, and gain a clear, structured v...
Introduction In this Zero Trust blog series, we’ve already explored how Identity, Devices, and Applications form the foundation of a modern security strategy. Each pillar plays...
Introduction In the first two posts of this Zero Trust series, we established that identity is the new perimeter and devices are the frontline of defence. By verifying every use...
Introduction In the first post of this series, we explored how identity has become the new perimeter in a world where users, apps, and data are no longer confined to…
Welcome to the first deep dive in my Zero Trust blog series. If you’ve read the series introduction, you’ll know that Zero Trust isn’t a single product or a quick…
Introduction Over the past few years, I’ve seen a growing interest in Zero Trust but also a lot of confusion. Many still view it as a product you can buy…
Introduction If you’re anything like me, you’ve probably joined a video call only to realise your lighting isn’t quite right. I use an Elgato Key Light Air, and I wa...
Introduction Azure Virtual Desktop (AVD) is Microsoft’s comprehensive Desktop-as-a-Service platform, enabling secure remote access to Windows desktops and apps from virtual...
This is part 1 of my Always On VPN series You can review the pervious posts if required: Introduction Always on VPN is a technology thats been around for some…
So this is part 4 of my multi part series on my journey with Bicep and ARM Templates and deploying AVD as a PAW.. Introduction In this part I’ll go…
So this is the 3rd part of a multi part series on my journey with Bicep and ARM Templates and deploying AVD as a PAW.. Introduction Welcome to the 3rd…
I have decided to create this as a multi part post to hopefully make it easier to understand. Introduction So Following on from my last post I thought I’d share…
Introduction Following on from my previous post I have been asked why I use a PAW for my own tenant, and or why not just use a conditional access policy…
I’m trying to “lead by example” (I use that term loosely), when it comes to privileged access. A bit of background For a long time my regular Microsoft 365 acc...
Introduction I’ve been working with a customer recently assisting with sorting out their privileged access and assisting them with their adoption of PIM (Privileged Identi...