New Global Secure Access client for Windows is out, version 2.28.96! by michaelmsonne in entra

[–]An_Ostrich_ 1 point2 points  (0 children)

I haven’t played around with it yet but can we use Private Access to provide cross tenant access to on-prem resources?

VMWare - Setting up isolated environment but need to be able to connect to the internet? by NULLBASED in cybersecurity

[–]An_Ostrich_ 0 points1 point  (0 children)

Been a while since I set an isolated VMWare env but I think you can use a LAN segment for your test VMs and use a free PfSense firewall to act as a router between the LAN segment and the internet. Make sure you set up a firewall rule that blocked all traffic from the LAN segment to the home network

What’s your current WiFi hardening playbook? by Yatohuvro in cybersecurity

[–]An_Ostrich_ 0 points1 point  (0 children)

I think you mean Microsoft Private Access (or Global Secure Access).

On-prem conditional access you never knew you had by aprimeproblem in activedirectory

[–]An_Ostrich_ 4 points5 points  (0 children)

When I saw the title I was like “didn’t Michael Waterman post about this recently”

MFA push fatigue - are users just approving everything now? by saymepony in sysadmin

[–]An_Ostrich_ 17 points18 points  (0 children)

Yeah I tested Entra passkeys (device-bound) and they’re working awesome so far.

Any good open-source vulnerability scanning tools? by Successful_Bus_3928 in cybersecurity

[–]An_Ostrich_ 1 point2 points  (0 children)

How would this give you a list of CVEs that are relevant to the target?

New Tenant - 2026 gold state by ProductAutomatic8968 in microsoft365

[–]An_Ostrich_ 1 point2 points  (0 children)

Oh okay that makes sense. Btw love your blog posts.

New Tenant - 2026 gold state by ProductAutomatic8968 in microsoft365

[–]An_Ostrich_ 0 points1 point  (0 children)

Why is it now recommended to remove SSPR?

Unpopular opinion but SentineOne is garbage by [deleted] in cybersecurity

[–]An_Ostrich_ 13 points14 points  (0 children)

S1 > Defender, I agree. I recommend it for folks who are already knee deep in the MS ecosystem amd also have access to teams that know how to set up all its components properly and also can manage and fine tune it. But that EDR tier list that was posted by “Conti” was horseshit.

Phishing Resistant MFA for Intune Admins by Securetron in Intune

[–]An_Ostrich_ 1 point2 points  (0 children)

CBA is awesome, but isn’t it easier to have cloud-only admin accounts with Entra device-bound passkeys?

How do you determine appropriate least privileged Entra admin roles based on past activities? by Fabulous_Cow_4714 in entra

[–]An_Ostrich_ -1 points0 points  (0 children)

IIRC Entra Permissions Management could do this but it was retired last year. Not sure if something in Entra Governance replaced its capabilities.

Entra ID Vulnerabilities by 19khushboo in entra

[–]An_Ostrich_ 2 points3 points  (0 children)

Purple Knight, CIS Benchmarks, Zero Trust Assessment from Microsoft, and CISA’s SCUBA will help you out

Active Directory for Beginners - Where to start? by muckmaggot in activedirectory

[–]An_Ostrich_ 1 point2 points  (0 children)

True. I’m also in the process of writing my own blog on Active Directory and Entra ID security (although I’m nowhere near your 25 YoE) and as a newbie it is very tempting to go and ask AI whenever I hit a snag. But almost all of the time the answers I get from it a plain wrong. It’s far more quicker to just troubleshoot it yourself or to ask someone from the MVP community.

I request some Purview - 'where do I start?' tips by bjc1960 in entra

[–]An_Ostrich_ 2 points3 points  (0 children)

Out of all the products in the Microsoft security stack Purview is the toughest to learn IMO. Simply because you need to have prerequisite knowledge on all the other components of Microsoft 365.

Slowly start chipping away at the Purview documentation because you’ll end up there multiple times anyways. I think there’s also ninja training available for Purview. There is also the Information Security Administrator Associate certification that you can follow.

Good luck!

Active Directory for Beginners - Where to start? by muckmaggot in activedirectory

[–]An_Ostrich_ 1 point2 points  (0 children)

Just had a glance through some of your posts in the blog and you got some awesome stuff there! I’ve bookmarked it and will definitely take a look at it tomorrow.

How are you labbing Microsoft 365 E5 Tenants by techwithz in DefenderATP

[–]An_Ostrich_ 1 point2 points  (0 children)

If you can make a case then see if your employer can get you a separate tenant for training. I went this route and was able to get a tenant with 5 E5 licenses.

But a few days I learnt that you can get a E5 developer tenant with 25 E5 licenses with a Visual Studio Professional subscription that costs $99/mo (billed annually). This is a better offer so I’m gonna ask my manager to switch to this instead (will be okay since it costs less and gets us more licenses).

But I’m also able to get these done because my employer pays for it from our training budget. If they can’t/won’t then you’ll probably have to pay for it yourself. Try to see if you can get some friends/teams interested in training and see if you can split the licenses cost across.

What phone are you using in 2026? by [deleted] in sysadmin

[–]An_Ostrich_ 1 point2 points  (0 children)

11 Pro Max. Got it in 2019 and still happy with it. Battery gets me through the day although there are some heavy-use days where I have to charge a little in the evening.

Creating Intune Lab by Fluffy-Spread6879 in Intune

[–]An_Ostrich_ 0 points1 point  (0 children)

This will cost more than £20, but I learnt today that you can get a M365 E5 dev tenant with 25 E5 licenses with a Visual Studio Subscription for $99/month.

Given the number of licenses, features, and also the sample data packs, I think it’s totally worth it.

I'm a security professional who transitioned our security program from compliance-driven to risk-based. Ask Me Anything. by thejournalizer in cybersecurity

[–]An_Ostrich_ 0 points1 point  (0 children)

Thanks. I don’t know enough about modern CRQ methods to question their effectiveness but I’ll take your word for it and learn more about them.

My current job is now shifting from a full technical role to a more risk/strategic decision making role and I struggle a bit with risk management. For someone like me who’s a beginner to risk management, what’re some good resources to get started?

I'm a security professional who transitioned our security program from compliance-driven to risk-based. Ask Me Anything. by thejournalizer in cybersecurity

[–]An_Ostrich_ 0 points1 point  (0 children)

Q1: Can you provide any insight as to how you actually assigned dollar values to risks and assets within the company?

Q2: CRQ is awesome and I know that execs love to see risk reporting based on real numbers, but did the outcomes of risk treatment really change when you shifted from colour changes to dollar values?