エピソード

  • S6E14 - Securing M365 with ScubaGear: A Deep Dive into CISA’s Assessment Tool
    2025/05/30

    In this episode, we dive deep into ScubaGear, an open-source tool developed by the Cybersecurity and Infrastructure Security Agency (CISA) as part of the Secure Cloud Business Applications (SCuBA) project. Designed to assess Microsoft 365 (M365) tenant configurations, ScubaGear helps organizations align with CISA’s Secure Configuration Baselines (SCBs) to prevent costly misconfigurations. From setup to real-world applications, we unpack how ScubaGear strengthens M365 security and share practical tips for IT admins and security teams. What You’ll Learn:

    • Why ScubaGear Matters: Learn how ScubaGear addresses the growing threat of cloud misconfigurations, which accounted for 30% of cloud attacks in early 2024. We discuss its origins in CISA’s SCuBA project, and its value for US federal agencies, private organizations, and critical infrastructure.
    • How ScubaGear Works: A technical breakdown of ScubaGear’s PowerShell-based workflow, using Microsoft Graph APIs and Open Policy Agent (OPA) to compare tenant settings against SCBs. We cover setup requirements.
    • Common Misconfigurations: Examples like disabled MFA or weak DLP policies, and how ScubaGear’s HTML, JSON, and CSV reports provide actionable remediation steps.
    • Best Practices: Tips for integrating ScubaGear into security workflows, including regular scans, policy customization, and combining with tools like Microsoft Secure Score.
    • Real-World Insights: Sam shares experiences from consulting.

    What did you think of this episode? Give us some feedback via our contact form, Or leave us a voice message in the bottom right corner of our site.

    Read transcript

    続きを読む 一部表示
    46 分
  • S6E13 - Security Copilot - Your Security Analyst's Assistant
    2025/05/16

    Alan and Sam discuss the benefits and use cases of Security Copilot. Alan Dives into how Security Pilot works and what some of the capabilities are. Here are a few things we covered:

    • What is Generative AI
    • What is Security Copilot
    • What are Agents
    • How much does it cost?

    What did you think of this episode? Give us some feedback via our contact form, Or leave us a voice message in the bottom right corner of our site.

    Read transcript

    続きを読む 一部表示
    1 時間 8 分
  • S6E12 - Microsoft updates April - new products and features released
    2025/05/02

    This week, Alan and Sam talk about new features and services that have gone into Public Preview or General Available status in the last month. We dive into a couple of these updates that peaked our interest.

    Some of the Microsoft product features and update we covered:

    • Key Microsoft Entra, Intune and Defender features and updates
    • Lots of Azure changes and new features

    What did you think of this episode? Give us some feedback via our contact form, Or leave us a voice message in the bottom right corner of our site.

    Read transcript

    続きを読む 一部表示
    53 分
  • S6E11 - Insights into Microsoft Secure 2025
    2025/04/25

    This week, Alan and Sam talk about new features and services that have been announced at Microsoft Secure 2025

    Some of the Microsoft product features and update we covered:

    • Security Copilot Agents
    • Data Security Investigations
    • Innovations in Microsoft Entra
    • Detection and protection for emerging AI threats

    What did you think of this episode? Give us some feedback via our contact form, Or leave us a voice message in the bottom right corner of our site.

    Read transcript

    続きを読む 一部表示
    54 分
  • S6E10 - Microsoft updates March - new products and features released
    2025/04/11

    This week, Alan and Sam talk about new features and services that have gone into Public Preview or General Available status in the last month. We dive into a couple of these updates that peaked our interest.

    Some of the Microsoft product features and update we covered:

    • Key Microsoft Entra, Intune and Defender features and updates
    • Lots of Azure changes and new features

    What did you think of this episode? Give us some feedback via our contact form, Or leave us a voice message in the bottom right corner of our site.

    Read transcript

    続きを読む 一部表示
    41 分
  • S6E9 - Monitor your OAuth Apps using Defender for Cloud Apps
    2025/03/28

    This episode Alan and Sam dive into the issues around OAuth apps and understanding how they are being used. Alan discusses the issues organisations are facing when any user could consent to application and the cleansing process that needs to take place. He also goes into how App Governance in Defender for Cloud Apps can help. Here are the areas they covered:

    • What are OAuth Apps?
    • What is Defender for Cloud Apps?
    • How can Defender for Cloud Apps help review consented apps?
    • What policies can you deploy?

    What did you think of this episode? Give us some feedback via our contact form, Or leave us a voice message in the bottom right corner of our site.

    Read transcript

    続きを読む 一部表示
    39 分
  • S6E8 - Mapping the Threatscape: Security Explorer & Attack Paths in Microsoft Defender for Cloud
    2025/03/21

    In this episode, we dive into two great features of Microsoft Defender for Cloud: Security Explorer and Attack Paths. Join us as we unpack how these tools leverage the Cloud Security Graph to help you hunt down risks, map potential attack routes, and prioritize your cloud security efforts like never before. Whether you’re managing Azure, AWS, or a hybrid setup, this episode is packed with insights to level up your defense strategy.

    What You’ll Learn:

    • How the Cloud Security Graph provides a unified view of your multicloud environment.
    • Using Security Explorer to proactively identify vulnerabilities and misconfigurations with custom queries.
    • Visualizing Attack Paths to see how attackers could move from an entry point to your critical assets.
    • Practical tips for prioritizing fixes and boosting your Secure Score.
    • Real-world examples of these tools in action and how to get started today.

    What did you think of this episode? Give us some feedback via our contact form, Or leave us a voice message in the bottom right corner of our site.

    Read transcript

    続きを読む 一部表示
    48 分
  • S6E7 - Microsoft updates February - new products and features released
    2025/03/14

    This week, Alan and Sam talk about new features and services that have gone into Public Preview or General Available status in the last month. We dive into a couple of these updates that peaked our interest.

    Some of the Microsoft product features and update we covered:

    • Key Microsoft Entra, Intune and Defender features and updates
    • Lots of Azure changes and new features

    What did you think of this episode? Give us some feedback via our contact form, Or leave us a voice message in the bottom right corner of our site.

    Read transcript

    続きを読む 一部表示
    48 分