Building a Modern Privileged Access Strategy
Learn how to build a modern privileged access strategy by combining Trust Levels, Privileged Access Workstations, phishing-resistant authentication, Conditional Access, PIM and...
Showing all posts in Privileged Identity.
Learn how to build a modern privileged access strategy by combining Trust Levels, Privileged Access Workstations, phishing-resistant authentication, Conditional Access, PIM and...
Learn how to operate and maintain a Privileged Access Workstation by managing configuration drift, patching, compliance, monitoring and governance to preserve administrative ass...
Learn how to harden a modern Privileged Access Workstation using Microsoft Intune, Microsoft Defender, Conditional Access, PIM and Windows security features to build a trusted a...
Learn how to choose the right administrative environment by balancing risk, operational requirements and assurance when deploying Privileged Access Workstations.
Explore how Virtual Privileged Access Workstations (vPAWs) provide a secure and practical alternative to physical PAWs by balancing administrative assurance with operational fle...
Discover why dedicated physical Privileged Access Workstations remain the highest assurance option for protecting privileged identities and securing administrative environments.
Discover when a Privileged Access Workstation is justified, how to assess administrative risk, and why workstation assurance should reflect the level of trust placed in an ident...
Discover what a Privileged Access Workstation (PAW) is, why it matters, and how it strengthens privileged identity security by protecting the administrative trust boundary.
An introduction to Privileged Access Workstations (PAWs), why they matter, and how they fit into a modern privileged identity strategy using Microsoft Entra.
Traditional administrative tiering was built for an infrastructure-centric world. As organisations move to cloud-native identities, Zero Trust and passwordless authentication, t...
What started as a handful of blog posts became one of the biggest professional challenges I've ever undertaken. This is the story behind The Privileged Path—why I wrote it, what...
Passkeys are rapidly becoming the preferred authentication method across Microsoft 365 and beyond, but not all passkeys are created equal. From synced passkeys in Apple Password...
Introduction In the first two posts of this Zero Trust series, we established that identity is the new perimeter and devices are the frontline of defence. By verifying every use...
Welcome to the first deep dive in my Zero Trust blog series. If you’ve read the series introduction, you’ll know that Zero Trust isn’t a single product or a quick…
So this is part 4 of my multi part series on my journey with Bicep and ARM Templates and deploying AVD as a PAW.. Introduction In this part I’ll go…
So this is the 3rd part of a multi part series on my journey with Bicep and ARM Templates and deploying AVD as a PAW.. Introduction Welcome to the 3rd…
So this is the 2nd part of a multi part series on my journey with Bicep and ARM Templates and deploying AVD as a PAW. Part One was the high…
I have decided to create this as a multi part post to hopefully make it easier to understand. Introduction So Following on from my last post I thought I’d share…
I’m trying to “lead by example” (I use that term loosely), when it comes to privileged access. A bit of background For a long time my regular Microsoft 365 acc...
Introduction I’ve been working with a customer recently assisting with sorting out their privileged access and assisting them with their adoption of PIM (Privileged Identi...