Microsoft Intune Portal

The Microsoft Intune Company Portal is the website address that IT staff and / or users go to for device management. The address is below. Intune is used by IT staff to reset devices entirely to the factory configuration, reset device passwords, manage apps, obtain BitLocker recovery keys if needed, and to check the status of a device. There is more, but the portal is the starting point after the foundational Intune requirements are in place.

A key point made on the Microsoft Learn website is that both enrolled AND non enrolled devices can use this website.

Using the Intune Company Portal website | Microsoft Learn

Office 365 soon to be Microsoft 365

On Tuesday, April 21, 2020 Microsoft’s premier Software as a Service (SaaS) offering officially becomes Microsoft 365. It is a very interesting change, considering how incredibly popular Office 365 is. There must be some high-level branding change going on in Redmond, Washington. Regardless, it will be … Microsoft 365. I am sure people will be calling it “Office” or “Office 365” for years to come!

Microsoft 365 Zero Standing Access with Customer Lockbox

I am studying for one of the Microsoft 365 Certifications. I am using the free “Microsoft Learn”* offerings or paths. They are excellent. I already went through the “Azure Fundamentals” and passed that exam. But now I want to work on some Microsoft 365 or “M365” certification [Office 365, but with EMS – “Enterprise Mobility and Security”].

In Unit 5 of the Compliance Module, Microsoft points out that the most dangerous attack vector is compromised credentials. One way to fight this is with “Zero Standing Access”: it is a “users don’t get permissions by default” approach to data access within their Office 365 space. If they need access, there is a request process available. This needs to be set up accordingly. I absolutely love this.

M365 Zero Standing Access
Zero Standing Access

They also apply this concept to their Data Centers, by way of “Lockbox Workflow”. The point is that not everyone and anyone can simply open a file, or (in the case of a Microsoft Data Center) walk on into a tenant space and ‘look around’. They have safeguards to stop that and help customers get more organized around the matter of access and data security. IT and Auditors especially love this.

M365 Customer Lockbox
Lockbox

* Microsoft Docs, Microsoft Learn