Microsoft 365 Security
Blog
Practical articles on Entra ID, Intune, Conditional Access, and device security.
-
Shadow AI Exposed (1/2): What organizations don't know about the AI tools their employees use
Most shadow AI incidents start with a legitimate task. What actually ends up in those tools, why security controls miss it, and what the NSW government breach tells us.
-
How to configure Intune compliance policies: step-by-step guide for all platforms
Configure Microsoft Intune compliance policies for Windows, macOS, iOS, and Android. Includes recommended settings per platform, Conditional Access wiring, report-only testing, and monitoring.
-
Intune compliance policies: what they actually change in your organization
Most organizations running Microsoft 365 have devices connecting without any enforced security requirements. Intune compliance policies close that gap, and the impact goes further than the security team.
-
Social Engineering Exposed (2/3): The Helpdesk Attack
Attackers don't break MFA. They call your helpdesk and get it reset. Here's what that looks like in Entra ID, and why most tenants aren't built to catch it.
-
Shadow AI in Microsoft 365: Find and Block It with Purview
Shadow AI leaks data without triggering a single alert. Use Entra Internet Access, Defender for Cloud Apps, and Microsoft Purview to find and block it in 4 steps.
-
Intune MDM vs MAM: When to use which approach
MDM controls the device, MAM controls the data. A decision matrix for IT admins, including the June 30 Conditional Access deadline you can't miss.
-
Social Engineering Exposed (1/3): How attackers get in without breaking anything
MGM lost $100M. Odido lost 6.2M records. Uber's systems went dark. None required a technical exploit. Just a phone call. Here's how it works.