Category
All posts
-
Power Platform Governance: Environments as Trust Boundaries
Read more →: Power Platform Governance: Environments as Trust BoundariesMost organizations deploy Power Platform without a coherent governance model. In this second blog of the series, we dive into the governance framework: environments as trust boundaries, maker rights via Entra ID, DLP as a second line of defense, Microsoft Purview for data classification, and the deliberate approach to the Default environment.
-
Power Platform & Zero Trust: Why Default Settings Are a Security Risk
Read more →: Power Platform & Zero Trust: Why Default Settings Are a Security RiskMost organizations deploy Power Platform without thinking explicitly about security. The default settings are designed for adoption — not for a Zero Trust posture. In this first blog of a four-part series, we break down why Power Platform must be treated as an enterprise workload, how the three Zero Trust principles translate directly to the…
-
RBAC for Applications – Least Privilege When Sending Email via the Graph API
Read more →: RBAC for Applications – Least Privilege When Sending Email via the Graph APIA while ago I received a question from a Power Platform team. They were building a Power App and wanted to add email functionality to it. To send emails from the app, they wanted to call the Microsoft Graph API. For this purpose, they had created an App Registration in Entra ID. The question was…
-
Conditional Access Policy Creation Improvements
Read more →: Conditional Access Policy Creation ImprovementsMicrosoft is constantly improving and developing existing services. This can be seen within Conditional Access, a few months ago the feature was introduced which made it possible to create a new policy based on a template. The templates that were available have recently been expanded considerably. The available templates are divided into several themes. For…
-
Secure connection to Azure SQL database with Azure Private Link
Read more →: Secure connection to Azure SQL database with Azure Private LinkA customer asked if there was a secure method to connect to an Azure SQL Database. Employees were connecting to the SQL database from home and connected with the public interface. When users want to access the database, a firewall rule must be added. This requires a lot of management for the it department. This…
-
Intune – Controlled Folder Access
Read more →: Intune – Controlled Folder AccessConfiguring Controlled Folder Access (CFA) with Intune to protect users against ransomware.
-
Intune – Detect and block malware
Read more →: Intune – Detect and block malwareThe build in Microsoft Defender AntiVirus on Windows 10 has a nice capability to protect you from malware. This feature is called block at first sight, this feature is introduced since Windows 10 build 1803. It can block non portable executable files like Javascript, Visual Basic script or macro and it can block regular exe.…






