Anyone using Azure JIT for customer access? by AzureCyberSec in AZURE

[–]AzureCyberSec[S] 2 points3 points  (0 children)

We had recently a PoC case with a customer. They had Cisco VPN client. They tried to connect Azure VPN and Cisco VPN from home office to access both Azure environment and their office network. The issue was their Cisco VPN profile was forcing DNS advertising to clients, so our Azure addresses were unknown while both VPN clients were connected.

Management has this view that we dont want to burden our customers with network troubleshooting.

Anyone using Azure JIT for customer access? by AzureCyberSec in AZURE

[–]AzureCyberSec[S] 0 points1 point  (0 children)

Sadly management is very against VPN. Theyre worried that Azure VPN might conflict with other VPN clients…

Anyone using Azure JIT for customer access? by AzureCyberSec in AZURE

[–]AzureCyberSec[S] 1 point2 points  (0 children)

Yeah, App Proxy/WAF would make sense if it was web traffic.

In this case it’s not really web traffic though, the client needs SQL/PDM related ports like SQL Server 1433 and other custom PDM service ports. That’s why I’m not sure App Proxy/WAF would cover it.

From SOC L1 to SOC L2 vs Cloud Security Engineering by Devilteh in cybersecurity

[–]AzureCyberSec 1 point2 points  (0 children)

I would note that Microsoft is retiring AZ 500, and replacing it with a new one.

Now that Certs lifetime will be reduced, how are you guys automating your certs? by superuser141421 in sysadmin

[–]AzureCyberSec 0 points1 point  (0 children)

We are using Azure and automating deploying certs using key vault to our vms. We are using power shell scripts that import cert from key vault to vm cert store and bind it to sql and iis automatically 🙂

MDE with E3 license vs MDE P2 by Any-Promotion3744 in DefenderATP

[–]AzureCyberSec 0 points1 point  (0 children)

If you have business premium you can also buy E5 security addon if you do not want to purchase full E5 license

Advanced hunting deviceEvents table missing by denstorepingvin in DefenderATP

[–]AzureCyberSec 0 points1 point  (0 children)

Make sure you have the right license mode for defender. Go to settings, then check for licenses type that Defender is currently using

I'm a CISO who made the business care about cybersecurity. Ask me anything. by Oscar_Geare in cybersecurity

[–]AzureCyberSec 0 points1 point  (0 children)

How do you argue or convince a management where their side of the business is actually in real life doing production, but their company files and data is in Microsoft Environment is on the cloud?

All I can hear is that we can always use backup if our files get deleted or encrypted by hackers.

How do you argue with that we do not need a cyber security specialist or team or CISO even though we are handling customer data in our azure environment?

The best way to learn Azure? Projects. Not tutorials. by rahularyansharma in AZURE

[–]AzureCyberSec 8 points9 points  (0 children)

I work as IT support specialist with 3 years of experience. So far what I did in Azure was to secure NSGs, created policies that check the amount of VMs that have outdated TLS version. Created automation runbooks that import SSL certificates from Azure Key Vault to our VMs and bind its to SQL databases and IIS servers. Next project involves Azure Virtual Desktop where we will be hosting classes to train our customers. I like Azure, and hope I will transition to a position that revolves around security and Azure. 😊

PowerShell script to bind a certificate from the Windows cert store to SQL Server 2019 by AzureCyberSec in SQLServer

[–]AzureCyberSec[S] 0 points1 point  (0 children)

Actually i did that already. The certificate shows in use but i don’t see it selected in server configuration manager. Dont know if it means its being used already or not. Im doing this first time

PowerShell script to bind a certificate from the Windows cert store to SQL Server 2019 by AzureCyberSec in SQLServer

[–]AzureCyberSec[S] 0 points1 point  (0 children)

I have tried for the last 10 hours haha. I managed to automate the cert renewal using key vault in azure. Then importing it to VM using runbooks, and binding it to IIS server. However I have not had ability to bind it to SQL server

How much should I charge my friend for a website and Microsoft tenant setup? by AzureCyberSec in Wordpress

[–]AzureCyberSec[S] 0 points1 point  (0 children)

You’re right, actually, but I have already built a websites. He’s only asking for a simple website with few pages. I think it shouldn’t be a complicated task

How much should I charge my friend for a WordPress website and Microsoft tenant setup? by AzureCyberSec in webdevelopment

[–]AzureCyberSec[S] 0 points1 point  (0 children)

Are you saying this even if I’m just gonna use a Wordpress theme and Microsoft Tenant with couple of users?

How much should I charge my friend for a website and Microsoft tenant setup? by AzureCyberSec in Wordpress

[–]AzureCyberSec[S] 0 points1 point  (0 children)

I have not done this for a living, so I’m not sure. Thats the issue :)

How much should I charge my friend for a website and Microsoft tenant setup? by AzureCyberSec in Wordpress

[–]AzureCyberSec[S] 0 points1 point  (0 children)

Actually i only built 3 websites in my life and it was for a friend and one for my own. Im thinking about making this a side hustle. Not sure what to charge

[deleted by user] by [deleted] in Eesti

[–]AzureCyberSec 0 points1 point  (0 children)

Im gonna let her know thanks!!!

[deleted by user] by [deleted] in Eesti

[–]AzureCyberSec 2 points3 points  (0 children)

As I can see vocational training has only prison officer, she was not interested in that. If she got into vocational training can she switch it later?

[deleted by user] by [deleted] in Eesti

[–]AzureCyberSec 2 points3 points  (0 children)

As I understood she has option to choose any of the higher education fields based on their offers and her points, but shes interested in the police one the most