Learning by Failing A Conditional Access horror story and what I learned from it Intro This blog talks about what i did wrong when i went to set up Conditional Access in my microsoft tenant and what i learned from it. Additionally it is based on a talk i had recently at MVP-Dagen Roadshow Bergen. The presentation is available at my github. Hopefully this can help someone setting up Conditional Access avoid the pitfalls i fell into.
Sentinel and ChatGPT My latest obsession, like many others, has been ChatGPT. Everything from making detailed backstories to fictional characters to brainstorming how to finish a sentence. Here my intentions are to go through some of my findings regarding using ChatGPT to help me with my work. Specifically incident investigation in Sentinel.
Using ChatGPT for Incident Triage in Azure Sentinel One of the key tasks in incident management is triaging incidents to determine their severity, priority, and next steps for resolution.
The Evolution of MFA: From Single Passwords to passwordless Authentication In the early days of the internet, it was common for people to use just a single password to secure their accounts. This seemed like a sufficient measure at the time, but as more and more personal and sensitive information started being shared online, the need for better security measures became evident. This is where MFA, or Multi Factor Authentication, comes in.
Monitoring to stay ahead of the threat landscape It is often difficult to catch everything that is crawling around your network. It is especially hard to catch what is outside your network. It is also where new vulnerabilities get discovered day by day and hour by hour.
Recently there was a Zero-Day vulnerability in exchange that shook the industry. Thankfully, Microsoft was early out with mitigation steps so people could secure their systems.