Category: IAM

  • Conditional Access Policy – Named Locations

    Frequently I see conditional access policies in Entra ID that don’t make sense, are targeted incorrectly, or are enabled but not assigned to users or groups. This naturally occurs over time, because not one person is responsible for them, it’s generally a shared responsibility that no one really wants to take ownership of, and when…

  • Identity & Access Management (IAM) Controls – The Stryker Incident

    Following the recent high profile cyber-attack on Stryker Medical by the Iran-based Cyber Group Handala, I think it’s fitting to discuss threat prevention methods even for a Global Admin (GA) Account which appears to have been compromised in this case. Yes, the GA account can circumvent some or part of these measures, but security isn’t…