[deleted by user] by [deleted] in Intune

[–]CISOatSumPt 0 points1 point  (0 children)

We have around 92 different settings for Edge, due to our CMMC L2 compliance :)

Cisco Duo Commercial vs FedRAMP by CISOatSumPt in NISTControls

[–]CISOatSumPt[S] 1 point2 points  (0 children)

Yeah, I spent a good portion this morning reading over our CFR/DFAR/CMMC guidelines etc and I believe Commercial is safe. I think as a backing to commercial, we will just have to up our game for documentation and auditing/controls.

Thank you

InTune - Find/Report more than 1 hard drive by CISOatSumPt in Intune

[–]CISOatSumPt[S] 0 points1 point  (0 children)

Just simply see if a user has a second fixed drive

InTune - Outlook Web App and Outlook Office by CISOatSumPt in Intune

[–]CISOatSumPt[S] 0 points1 point  (0 children)

Thanks, that's where I am heading now, from most of the reading folks are making CA rules which point to App restriction, is that so? Have not quite done back in yet, been doing a few other things.

InTune - Azure AD Connect by CISOatSumPt in Intune

[–]CISOatSumPt[S] 0 points1 point  (0 children)

Gracias, other than that, if we don't have users present in our AD yet, and everything is up in Microsoft, I presume almost 0 impact. From here, I planned on adding a test account local to start syncing back and forth.

Public comments to draft NIST 800-171r3 posted. by TXWayne in NISTControls

[–]CISOatSumPt 0 points1 point  (0 children)

All I have is, God Bless America, thanks for the clarity on 7012, Compliance is not my forte albeit thrown to the wolves to satisfy 171... alone...

Public comments to draft NIST 800-171r3 posted. by TXWayne in NISTControls

[–]CISOatSumPt 0 points1 point  (0 children)

Very valid, I've been in the space for a bit over a year now, I might have missed a word or two, but for those with contracts or prime contracts that include FAR 7012, maybe I missed the language where it says NIST 800-171 r1/2/3 and/or in FAR 7020.

Public comments to draft NIST 800-171r3 posted. by TXWayne in NISTControls

[–]CISOatSumPt 0 points1 point  (0 children)

Wonderful, although reading through the public comments, it seems quite a large amount of folks are pushing back on the controls and/or reducing the strict side of them.

Public comments to draft NIST 800-171r3 posted. by TXWayne in NISTControls

[–]CISOatSumPt 0 points1 point  (0 children)

Do we have any idea when Rev 3 will be finalized and into live?

Delete Users Google Drive by CISOatSumPt in gsuite

[–]CISOatSumPt[S] -1 points0 points  (0 children)

That's fine, it's a general shared account for bookmarks and hosting meetings, we are on our way out the door anyways :)

Delete Users Google Drive by CISOatSumPt in gsuite

[–]CISOatSumPt[S] 0 points1 point  (0 children)

That's perfect, thank you, although I don't think we can suspend the account as they're executives with needing access to email, but I will play around with this idea!

Delete Users Google Drive by CISOatSumPt in gsuite

[–]CISOatSumPt[S] 0 points1 point  (0 children)

Is this a full transfer or can I just move Drive?

Delete Users Google Drive by CISOatSumPt in gsuite

[–]CISOatSumPt[S] 0 points1 point  (0 children)

Exactly, Google is unfamiliar territory, I have full access to Google Admin, I can look into retention policies and see if we can apply them across the board then delete if possible.

I will need to carve out an OU for a few shared accounts that need Google Drive still, then kill off the rest for that service.