New OneDrive Feature Poses Data Leak Risk for Businesses

Interian | Securing Insights

Microsoft’s new OneDrive feature, launching in May 2025, lets users sync personal accounts on work devices—a convenience that could spell trouble for businesses. This opens the door to data leaks and compliance risks. Our post dives into these security concerns and offers IT administrators practical solutions using Group Policies and Intune. Learn how to lock down personal syncing and protect your organization’s sensitive data—read on to stay ahead of the threat!

AI Governance in 2025: Protecting Against Data Exfiltration

AI Governance in 2025

As Artificial Intelligence (AI) transforms industries with unparalleled innovation, it also brings serious security risks like data leaks and malicious attacks. A staggering 57% of organisations report rising AI-related incidents, yet 60% lack basic controls. This blog explores the top AI threats, including data exfiltration and malicious prompt injection, and outlines a Zero Trust framework to secure your AI initiatives. Discover powerful tools, from data governance to threat protection, to safeguard your data and ensure compliance in 2025. Don’t let AI become a security wild west—learn how to innovate safely today.

How to Enhance Microsoft 365 Auditing: Beyond the Unified Audit Log

Interian | Securing Insights

Discover how to strengthen your Microsoft 365 auditing strategy in this practical guide. Learn the strengths and limitations of the Unified Audit Log (UAL) and explore actionable steps to go beyond its basics—using Audit (Premium), SIEM integration, PowerShell automation, and more. Perfect for IT professionals aiming to boost security and compliance with advanced auditing techniques. Start building a robust setup today!

Implementing Microsoft Defender for Cloud: Mastering Server Protection with Defender for Servers

Interian | Securing Insights

Discover how to implement Microsoft Defender for Cloud’s dedicated Defender for Servers plan to secure your server workloads across on-premises, hybrid, and multi-cloud environments. This guide explains why Defender for Cloud is the superior choice over Defender for Endpoint for server security, offering advanced threat detection, compliance monitoring, and streamlined management. Follow our step-by-step instructions to onboard servers, configure policies, and set up vulnerability assessments for both Windows and Linux systems, ensuring robust protection against evolving cyber threats.

Replacing MDT with Autopilot Device Preparation: A Step-by-Step Guide

Interian | Securing Insights

Discover how Autopilot Device Preparation can streamline Windows device deployment in modern, cloud-driven IT environments. This guide explains a step-by-step process—from setting up security groups and configuring Intune policies to utilising Delivery Optimisation for improved network efficiency. While Autopilot simplifies deployment with zero-touch provisioning, it currently lacks key features such as removing OEM bloatware, custom Windows imaging, and clean OS reimaging for every new device. Explore how these limitations can be addressed, and consider complementary solutions like the PowerShell Deployment Solution (PSD), to fully meet your organisational needs.

Mastering Microsoft Sentinel: 25 KQL Queries for Powerful Threat Detection

Interian | Securing Insights

Unlock the power of Microsoft Sentinel with this comprehensive guide featuring 25 essential KQL queries for potent threat detection. In this post, you'll discover expertly crafted queries designed to identify a range of adversary tactics—from password spraying and suspicious PowerShell executions to unusual login patterns and obfuscated scripts. Whether you're looking to refine your current security operations or embark on a new journey with Sentinel, this guide offers practical insights, customisation tips, and real-world scenarios to help you stay ahead of evolving cyber threats.

Maximising Security and Performance with Microsoft Defender Antivirus and Intel TDT

Interian | Securing Insights

In an era where sophisticated cyber threats and performance demands converge, Microsoft Defender Antivirus (MDAV) rises to the challenge with advanced hardware acceleration. By integrating Intel Threat Detection Technology (TDT), MDAV enhances endpoint protection while maintaining efficiency. Features like Accelerated Memory Scanning and Cryptojacking Detection offload resource-intensive tasks to the GPU, ensuring robust security without straining system resources.

Explore how to optimise these cutting-edge features using Microsoft Intune, from enabling Intel TDT and File Hash Computation to deploying best practices for consistent performance and protection. This guide is your roadmap to leveraging hardware-accelerated cybersecurity in a futuristic, secure IT environment.

How to Receive Admin Notifications in Microsoft Entra Without a Mailbox

Interian | Securing Insights

In this blog post, we explore how to receive admin email notifications in Microsoft Entra without assigning mailbox licenses to admin accounts. By leveraging plus addressing in Exchange Online, organisations can route notifications to existing mailboxes, maintaining security and reducing licensing costs. Plus addressing allows admins to create unique email aliases by appending a "+" and a tag to their existing email address, ensuring critical alerts are received without exposing privileged accounts to additional risks. We walk through the setup process, share a real-world use case from Contoso, and demonstrate how this solution can streamline your admin workflow.