Microsoft 365 may be ubiquitous, but that doesn’t mean it is secure by default. Hollingworth and McAllister explore the often-overlooked risks lurking in tenant configurations, administrative privileges and guest accounts, and explain why organisations need to take greater responsibility for how their Microsoft environments are configured and governed.
The conversation also examines how attackers are exploiting compromised admin accounts to manipulate settings, bypass security controls, and gain deeper access to sensitive data. McAllister explains why the traditional Microsoft 365 admin model can create an unnecessarily large blast radius, and how organisations can apply least privilege, role-based access and tighter identity controls to reduce their exposure.
Finally, Hollingworth and McAllister examine what a mature Microsoft 365 resilience strategy should look like – from establishing a secure configuration baseline and detecting configuration drift to automated remediation and recovering the tenant itself after a serious compromise.
Listen to the full episode to find out why backing up your data isn’t enough – and what organisations need to do to protect the “glass” holding it.
Enjoy,
The Cyber Uncut team
Click here to listen on your device
A global independent software vendor that makes it easier to leverage your Microsoft investment, to accelerate...