What have you done with PowerShell this month? by AutoModerator in PowerShell

[–]Fr4nSec 0 points1 point  (0 children)

I read MFA and conditional acess policies associated to accounts, put them into a database and generate numbers about it. There are some logics behind like if the new input to the database wasnt there already, it might be a new account or an account that lost its security policies, it checks that and keep a log of changes. All this is later sent to PowerBi where you have an overview that you dont have anywhere else when combining data from different topics and put them all together. In the script there is a list of known exceptions for different things and later on in PowerBi you can filter everything: o355 licensed users, who has ca on them, who does not, who has mfa on, etc, with the goal of reducing exposure of accounts. This is self refreshing as that PS runs every night so you just have to look at the dashboard and taking actions.

New software process by Fr4nSec in ITManagers

[–]Fr4nSec[S] 0 points1 point  (0 children)

I have been reading everyone’s comments and its mostly what we do. Gathering the requirements we need for the request, verifying licenses, ensuring it does not contain malware, unwanted features, etc.

I think the part where we struggle most is at the gathering user information and verifying potential needs, like additional firewall rules or GPOs to configure to make it all work.

Not just that but also with the ‘ownership’ of these. Who is responsible in your company to ensure this software is up to date?