Purview Insider Risk Management: How to Capture Forensic Evidence on Intune Enrolled Devices

Insider risks are a growing threat to organizations, especially in the era of remote work and cloud-based services. Insider risks can be caused by malicious actors who intentionally steal or leak sensitive data, sabotage systems, or compromise accounts. They can also be caused by negligent or compromised users who accidentally or unknowingly expose data, violate […]

Block Top-Level Domains with Intune and Windows Firewall Policy

In this blog post, I will show you how to create Intune Endpoint Security Windows Firewall Policy and Firewall Rules to block outbound traffic using reusable group settings. This is a useful scenario for organizations that want to restrict the network access of their devices to specific top-level domains. By using Intune, you can manage […]

Deploying Intune LAPS with a Remediation Script and Protection Policy

Microsoft Intune LAPS (Local Administrator Password Solution) is a feature that allows you to manage the local administrator passwords of your Windows devices enrolled in Intune. It helps you prevent unauthorized access, pass-the-hash attacks, and lateral movement by generating random, complex, and unique passwords for each device. You can also set expiration policies and view […]

The Case for Tabletop Exercises in Incident Response Planning

Tabletop exercises remain a mainstay of disaster recovery and incident management preparation, and with good reason: they provide an accessible and low-cost way to demonstrate the organization’s readiness (or lack thereof) for an adverse event without expensive penetration testing or Red Team attack simulations. Today we will focus on the reasons a tabletop exercise should […]

How Data Archival Brings Stronger Data Governance

The Challenge Quite often I work with clients that are trying to untie the Gordian knot that is data retention and stale data deletion. In most cases, these organizations have adopted some form of “keep everything forever” because it is difficult to get internal legal or risk teams to define a realistic retention policy—or if […]

Web Content Filtering and Protection with Defender for Endpoint

When I was a technology executive in the days before Microsoft 365 and Defender for Endpoint, November and December always used to give me pause. Hectic end-of-year work schedules and vacations both drive people to use their employer’s devices for personal use: shopping, traveling, or (yikes!) sometimes entertaining the kids. The endpoint-based firewalls and filtering […]

eGroup Enabling Technologies Releases Microsoft 365 Copilot Launch Readiness Assessment

eGroup Enabling Technologies Releases Microsoft 365 Copilot Launch Readiness Assessment, Paving the Way for Next-Level Productivity and Collaboration [28, September 2023] – eGroup Enabling Technologies, a 9x Microsoft Partner of the Year Award recipient, is thrilled to introduce the Microsoft 365 Copilot Launch Readiness Assessment. Microsoft 365 Copilot is a groundbreaking tool designed to revolutionize […]

eGroup | Enabling Technologies Achieves Microsoft Cloud Security Specialization

eGroup | Enabling Technologies Achieves Microsoft Cloud Security Specialization [21, September 2023] – eGroup | Enabling Technologies, a 9x Microsoft Partner of the Year Award recipient and award-winning Managed Services Provider, is proud to announce its recent achievement of earning the Microsoft Cloud Security Specialization. This designation highlights the company’s commitment to delivering cutting-edge cloud […]

Improve Your Tenant’s Compliance with Purview Compliance Manager

The features of Purview that we’ve discussed so far in this series — Content Explorer, Search, Data Loss Prevention, Sensitivity Labeling, and Data Retention—are all foundational tools to help better secure and govern data in your Microsoft 365 tenant. Today, we are going to look at a Purview feature that will help measure how well […]

Use Data Retention to Reduce Risk

In the past few months, I have discussed the first three foundational elements of Microsoft Purview Compliance: Use Purview Content Explorer searches to identify where sensitive data exists in your tenant, Use Purview Data Loss Prevention (DLP) policies to prevent sensitive data from being shared outside the organization, and Use Sensitivity Labels to identify and […]

Request Access to Win Wires

Enter your work email to request access to the eGroup Win Wires repository.

By requesting access, you confirm you are using an approved business email domain. You’ll receive a secure, one-time login link after returning to the Win Wires page.