Confidential Computing: The Missing State of Data Protection

Confidential computing protects sensitive data while it is processed. Learn how TEEs, attestation and secure key release close the data-in-use gap.
Practical Microsoft security, identity and governance insights
Practical Microsoft security, identity and governance insights

Confidential computing protects sensitive data while it is processed. Learn how TEEs, attestation and secure key release close the data-in-use gap.

TL;DR– OneDrive Photos can appear as part of the existing OneDrive installation and surface local images even when no Microsoft account is signed in.– After sign-in, AI search, OCR and optional facial grouping become available, introducing additional processing of photo…

Can Microsoft Purview protect Azure OpenAI, AI agents and custom AI applications on its own? Explore where Purview ends, where Presidio begins, and how both complement each other in enterprise AI architectures

Discover the game-changing 'Require Risk Remediation' control in Microsoft Entra Conditional Access. This preview feature simplifies risk management by handling both password and passwordless users in one policy, reducing complexity and misconfigurations. Get a step-by-step guide, real-world benefits, and pragmatic insights into its limitations for enhanced security.

Many organisations assume Microsoft Entra ID handles guest users securely by default—but it doesn't. In this post, we uncover the top 5 common mistakes in guest access management, from excessive directory visibility to perpetual access without lifecycle controls. Learn how to lock down your tenant with practical fixes, ensuring secure B2B collaboration without the risks.

Get ready for Microsoft Entra ID’s app consent changes starting 16 July 2025! This guide explains the new Microsoft-managed policy, how it impacts admins, and steps to avoid disruptions, including enabling the Admin Consent Workflow and auditing app permissions. Stay ahead with key dates and tips to ensure compliance and security.

Every IT professional knows the struggle: an Intune notification pings with a vague error code or cryptic alert about a device compliance issue, failed update, or potential security threat. You're left scratching your head, wondering, "What does this even mean?" These unclear messages can bury critical issues, like non-compliant devices or malware risks, in a flood of noise. Imagine if those alerts came with clear, human-readable explanations and actionable steps.

Microsoft’s new OneDrive feature, launching in May 2025, lets users sync personal accounts on work devices—a convenience that could spell trouble for businesses. This opens the door to data leaks and compliance risks. Our post dives into these security concerns and offers IT administrators practical solutions using Group Policies and Intune. Learn how to lock down personal syncing and protect your organization’s sensitive data—read on to stay ahead of the threat!

As Artificial Intelligence (AI) transforms industries with unparalleled innovation, it also brings serious security risks like data leaks and malicious attacks. A staggering 57% of organisations report rising AI-related incidents, yet 60% lack basic controls. This blog explores the top AI threats, including data exfiltration and malicious prompt injection, and outlines a Zero Trust framework to secure your AI initiatives. Discover powerful tools, from data governance to threat protection, to safeguard your data and ensure compliance in 2025. Don’t let AI become a security wild west—learn how to innovate safely today.

Discover how to strengthen your Microsoft 365 auditing strategy in this practical guide. Learn the strengths and limitations of the Unified Audit Log (UAL) and explore actionable steps to go beyond its basics—using Audit (Premium), SIEM integration, PowerShell automation, and more. Perfect for IT professionals aiming to boost security and compliance with advanced auditing techniques. Start building a robust setup today!