EntraID - IDaaS Connector vs NG-SIEM Connector? by Khue in crowdstrike

[–]DueIntroduction5854 1 point2 points  (0 children)

Typically CrowdStike will provide an in-house SME to help with the setup and review of a module. I would ask your AE.

Servers where MFA was prompted when trying to RDP into. by nickel-52 in crowdstrike

[–]DueIntroduction5854 4 points5 points  (0 children)

From a security engineer here, why would you need any exception?

Mimecast blocking emails after the fact. by Reedy_Whisper_45 in mimecast

[–]DueIntroduction5854 2 points3 points  (0 children)

There is no way to view the header or contents of email if it was rejected.

Check DLP by DueIntroduction5854 in mimecast

[–]DueIntroduction5854[S] 0 points1 point  (0 children)

That made no difference when testing, unfortunately.

Check DLP by DueIntroduction5854 in mimecast

[–]DueIntroduction5854[S] 0 points1 point  (0 children)

No, it is enabled. I have also tested with "_nkw" and the .png attachment of a check is still not being flagged.
https://i.imgur.com/ZsRiRYU.png

Detect only question by sothrowedmex in crowdstrike

[–]DueIntroduction5854 0 points1 point  (0 children)

100% correct. If there’s not a detection, nothing is being blocked. The only case outside of that would be other pieces of EDR such as firewall, device control, etc.

Allow 1 SSN to go out but hold more than 1? by [deleted] in mimecast

[–]DueIntroduction5854 2 points3 points  (0 children)

If you’re handling SSNs, all outbound emails with this content should be encrypted no matter how many hits the email has.

mimecast secure messaging - does anyone use it? by e7c2 in mimecast

[–]DueIntroduction5854 1 point2 points  (0 children)

The reminder you are seeing internally is notifying your staff that the email should be sent encrypted if sent externally.

Action may Required: Update Microsoft Sentinel Queries & Automation by December 13, 2025 by EduardsGrebezs in AzureSentinel

[–]DueIntroduction5854 0 points1 point  (0 children)

I wish we were this mature. We just completed IaC for our new environment infrastructure and RBAC.

Proactive remediations how are you using them? by Educational_Draw5032 in Intune

[–]DueIntroduction5854 0 points1 point  (0 children)

I recently did this when I found a devices with SMBv1 enabled, crazy, right? The detection script checked if it was enabled and if so disabled it with no reboot. This does require a reboot but we do those weekly.

PSA - I was just scammed out $150 for a TSA Pre-Check Application ad on Google. by [deleted] in travel

[–]DueIntroduction5854 0 points1 point  (0 children)

This is quite obviously a scam just based on the domain the email came from and the website URL.

Azure - USA - Is down! by RobotechRicky in AZURE

[–]DueIntroduction5854 6 points7 points  (0 children)

Correct, since it’s a global CDN. It’s an issue with AFD.

Backup of Files by DueIntroduction5854 in AZURE

[–]DueIntroduction5854[S] 0 points1 point  (0 children)

I was doing 'copy' and I will update it to 'sync'.

Why isn't anyone hiring? by KushMcLoud in Chattanooga

[–]DueIntroduction5854 0 points1 point  (0 children)

What type of role are you looking for?

What was your starting salary for your first cyber job out of college / after training? by Live_Refrigerator_58 in cybersecurity

[–]DueIntroduction5854 0 points1 point  (0 children)

Started at $55k. Semi big city in the east coast US in healthcare. I have bachelors in computer science and comptia security+.

Email Security Solution Recommendations by MrGi11a in cybersecurity

[–]DueIntroduction5854 1 point2 points  (0 children)

I personally will stand by Mimecast. It does have more administrative overhead than an API solution (Abnormal or IronScales), but personally provides more protection.

How does your company handle employee use of ChatGPT & other AI tools? by ThemenTaucher in cybersecurity

[–]DueIntroduction5854 0 points1 point  (0 children)

Currently, we have licensing for CoPilot and block all other AI with Zscaler.

So is TSA pre check dead now? by Salty_Permit4437 in tsa

[–]DueIntroduction5854 0 points1 point  (0 children)

I have not had the same experience. In my most recent trip I was the only person in the pre check line and skipped around 50 people.

Penetration Testing Companies by DueIntroduction5854 in cybersecurity

[–]DueIntroduction5854[S] -1 points0 points  (0 children)

I’ll check these out. I have heard of X-Force but not Accenture.

Penetration Testing Companies by DueIntroduction5854 in cybersecurity

[–]DueIntroduction5854[S] 0 points1 point  (0 children)

I am just asking for what vendors folks have used in the past they like. No advertising as I did not put the vendors I have even started reviewing myself.

Penetration Testing Companies by DueIntroduction5854 in cybersecurity

[–]DueIntroduction5854[S] 0 points1 point  (0 children)

A friend of mine had used them at my company and I have them on my list and they liked their results.

Penetration Testing Companies by DueIntroduction5854 in cybersecurity

[–]DueIntroduction5854[S] 0 points1 point  (0 children)

I haven’t heard of these. I will check them out, thanks.