Protecting against Malicious Azure AD Applications (Part 2: Investigating using MCAS)

In a previous post, I detailed the importance of controlling Azure AD OAuth Applications and consent within your environment. I also looked at how we can add approval for OAuth app requests so that each app can be vetted by an admin before consent is granted. With controls and governance in place, it's important to …

Continue reading Protecting against Malicious Azure AD Applications (Part 2: Investigating using MCAS)

Right to Disconnect: How to Block Teams Messages After Business Hours

I recently wrote an article about how we can add a disclaimer to email messages outside of business hours to promote a healthy work / life balance. I then received a question asking if we can achieve something similar for Teams messages. While we can't add a disclaimer, we can leverage Microsoft Cloud App Security …

Continue reading Right to Disconnect: How to Block Teams Messages After Business Hours

Study Guide Series: Exam MS-500 – Implement and Manage Microsoft Cloud App Security (Part 5)

This post is part of the overall MS-500 Exam Study Guide. Links to each topic as they are posted can be found here. This post will cover the following exam topics listed under the “Implement and Manage Microsoft Cloud App Security” section: Configure Cloud App Security policies and templates (Continued..)Review, interpret and respond to Cloud App …

Continue reading Study Guide Series: Exam MS-500 – Implement and Manage Microsoft Cloud App Security (Part 5)

Study Guide Series: Exam MS-500 – Implement and Manage Microsoft Cloud App Security (Part 3)

This post is part of the overall MS-500 Exam Study Guide. Links to each topic as they are posted can be found here. This post will cover the following exam topics listed under the “Implement and Manage Microsoft Cloud App Security” section: Manage apps in Cloud App SecurityManage Microsoft Cloud App Security In the previous post …

Continue reading Study Guide Series: Exam MS-500 – Implement and Manage Microsoft Cloud App Security (Part 3)

Study Guide Series: Exam MS-500 – Implement and Manage Microsoft Cloud App Security (Part 2)

This post is part of the overall MS-500 Exam Study Guide. Links to each topic as they are posted can be found here. This post will cover the following exam topics listed under the “Implement and Manage Microsoft Cloud App Security” section: Manage cloud app discoveryManage entries in the Cloud app catalog In the previous post …

Continue reading Study Guide Series: Exam MS-500 – Implement and Manage Microsoft Cloud App Security (Part 2)

Study Guide Series: Exam MS-500 – Implement and Manage Microsoft Cloud App Security (Part 1)

This post is part of the overall MS-500 Exam Study Guide. Links to each topic as they are posted can be found here. This post will cover the following exam topics listed under the “Implement and Manage Microsoft Cloud App Security” section: Plan Cloud App Security implementationConfigure Microsoft Cloud App Security Plan Cloud App Security Implementation …

Continue reading Study Guide Series: Exam MS-500 – Implement and Manage Microsoft Cloud App Security (Part 1)

Study Guide Series: Exam MS-500 – Monitor and Manage Azure ATP

This post is part of the overall MS-500 Exam Study Guide. Links to each topic as they are posted can be found here. Note: Azure Advanced Threat Protection has recently been renamed Microsoft Defender for Identity. This post will refer to it using the new name but the exam may contain references to the older name. For …

Continue reading Study Guide Series: Exam MS-500 – Monitor and Manage Azure ATP

Study Guide Series: Exam MS-500 – Implement an Enterprise Hybrid Threat Protection Solution

This post is part of the overall MS-500 Exam Study Guide. Links to each topic as they are posted can be found here. Note: Azure Advanced Threat Protection has recently been renamed Microsoft Defender for Identity. This post will refer to it using the new name but the exam may contain references to the older name. …

Continue reading Study Guide Series: Exam MS-500 – Implement an Enterprise Hybrid Threat Protection Solution

Using Cloud App Security Session Controls to Protect Sensitive Data

Microsoft Cloud App Security (MCAS) is an amazing tool that a lot of organizations don't seem to use to it's full potential. There are a huge amount of third party apps supported and the flexibility it brings is fantastic. As a baseline, Cloud App Security Discovery is a great way to get insights into the …

Continue reading Using Cloud App Security Session Controls to Protect Sensitive Data