Category Entra & Identity

Require Risk Remediation: The Game-Changer for Conditional Access Policies

Interian | Securing Insights

Discover the game-changing 'Require Risk Remediation' control in Microsoft Entra Conditional Access. This preview feature simplifies risk management by handling both password and passwordless users in one policy, reducing complexity and misconfigurations. Get a step-by-step guide, real-world benefits, and pragmatic insights into its limitations for enhanced security.

Microsoft Dumps OTP Authentication for SharePoint Online Sharing with Entra ID B2B

Interian | Securing Insights

Microsoft is phasing out One-Time Passcode (OTP) authentication for SharePoint Online and OneDrive external sharing, replacing it with Entra ID B2B Collaboration, effective July 1, 2025 (MC1089315). Legacy OTP links will stop working, requiring users to re-share content to restore access for external collaborators, who must also register for mandatory MFA. Prepare now by notifying users, updating documentation, auditing shared content, and ensuring Entra ID B2B settings are configured. This shift enhances security but demands proactive planning to avoid disruptions.

New OneDrive Feature Poses Data Leak Risk for Businesses

Interian | Securing Insights

Microsoft’s new OneDrive feature, launching in May 2025, lets users sync personal accounts on work devices—a convenience that could spell trouble for businesses. This opens the door to data leaks and compliance risks. Our post dives into these security concerns and offers IT administrators practical solutions using Group Policies and Intune. Learn how to lock down personal syncing and protect your organization’s sensitive data—read on to stay ahead of the threat!

AI Governance in 2025: Protecting Against Data Exfiltration

AI Governance in 2025

As Artificial Intelligence (AI) transforms industries with unparalleled innovation, it also brings serious security risks like data leaks and malicious attacks. A staggering 57% of organisations report rising AI-related incidents, yet 60% lack basic controls. This blog explores the top AI threats, including data exfiltration and malicious prompt injection, and outlines a Zero Trust framework to secure your AI initiatives. Discover powerful tools, from data governance to threat protection, to safeguard your data and ensure compliance in 2025. Don’t let AI become a security wild west—learn how to innovate safely today.

How to Enhance Microsoft 365 Auditing: Beyond the Unified Audit Log

Interian | Securing Insights

Discover how to strengthen your Microsoft 365 auditing strategy in this practical guide. Learn the strengths and limitations of the Unified Audit Log (UAL) and explore actionable steps to go beyond its basics—using Audit (Premium), SIEM integration, PowerShell automation, and more. Perfect for IT professionals aiming to boost security and compliance with advanced auditing techniques. Start building a robust setup today!

How to Receive Admin Notifications in Microsoft Entra Without a Mailbox

Interian | Securing Insights

In this blog post, we explore how to receive admin email notifications in Microsoft Entra without assigning mailbox licenses to admin accounts. By leveraging plus addressing in Exchange Online, organisations can route notifications to existing mailboxes, maintaining security and reducing licensing costs. Plus addressing allows admins to create unique email aliases by appending a "+" and a tag to their existing email address, ensuring critical alerts are received without exposing privileged accounts to additional risks. We walk through the setup process, share a real-world use case from Contoso, and demonstrate how this solution can streamline your admin workflow.