Beyond the Tenant / Security
Security that works beyond the policy diagram.
Microsoft 365 security is not one product or one control. It is the relationship between identity, access, endpoints, email, collaboration, data, monitoring, and the operational processes behind them. A secure design has to hold up when users, administrators, applications, and attackers all interact with the environment.
This is where I break down Entra ID, Conditional Access, Defender, Zero Trust, privileged access, email security, threat detection, endpoint controls, and the practical decisions behind a security posture that can actually be operated.
Security Areas
The layers that protect the environment.
Identity & Access
Authentication, Conditional Access, MFA, identity risk, external identities, and the controls that define who can get in and under what conditions.
Privileged Access
PIM, administrative roles, separation of duties, emergency access, service accounts, and reducing standing privilege across the tenant.
Threat Protection
Defender, Safe Links, Safe Attachments, anti-phishing, threat intelligence, and the controls that detect and stop active attacks.
Endpoint Security
Intune, compliance, device risk, Defender for Endpoint, application controls, and connecting device posture to access decisions.
Data Security
Sensitivity, DLP, encryption, sharing controls, information barriers, and protecting data after identity access has already been granted.
Detection & Response
XDR, alerts, incidents, audit signals, investigation, response workflows, and making sure security telemetry leads to action.
Security Articles
Security from the field.
No Security articles have been published yet.
How I Approach Security
Start with identity, then build defense in layers.
My security approach starts with identity, access, and the actual threat surface. From there, I layer endpoint, email, collaboration, data protection, and detection controls based on risk and operational reality. The goal is not simply to enable more security features — it is to create controls that work together, generate useful signals, and can be supported when something goes wrong.
