Adventures in the Zero Trust Cloudland
  • About Me
  • Resources
    Azure Architecture Center Azure Well Architected Framework AADInternals Blog Awesome Entra AzAdvertizer Azure Cloud Adoption Framework Dirk-jan Mollema Blog Entra ID Attack & Defense Playbook Entra.News KQLSearch MCRA NetSPI Blog Office 365 for IT Pros SpecterOps Blog Zero Trust Core Principles Zero Trust Guidance Center
  • Search
✕
    • Azure Infrastructure - Log Analytics - calculate daily ingested data with moving average

      By Lukasz Kozubal

      Posted on July 11, 2024

      If you need to get information about the size of billable data ingested into given Log Analytics workspace (with or without Sentinel solution installed), use the following KQL query: [Read More]
      Tags:
      • Azure Infrastructure
      • Operational Excellence
      • Cost Efficency
      • FinOps
    • Entra ID - Let's discuss role-assignable groups!

      By Lukasz Kozubal

      Posted on July 3, 2024

      Role-assignable groups in Entra ID (P1 or P2 licensing required) are objects with subtle, but important difference, distinguishing them from other ordinary groups. Namely, during their creation, the isRoleAssignable attribute is set to True. It is an immutable attribute, available only during the group creation. Groups created as role-assignable stay... [Read More]
      Tags:
      • Microsoft Entra ID
      • Access Control
      • Least Privilege
      • Identity Management
      • Governance
      • Security
    • Entra ID Conditional Access - tips and tricks

      By Lukasz Kozubal

      Posted on June 26, 2024

      Conditional Access policies are at the heart of Entra ID zero trust policy engine enforcement. They collect various signals (identity, device, network location, protocol, client app type, real time sign-in risk, accessed resource) and enable enforcement of company’s resource access policies. [Read More]
      Tags:
      • Microsoft Entra ID
      • Conditional Access
      • Identity Management
      • Governance
      • Security
    • Entra ID - Application management policies

      By Lukasz Kozubal

      Posted on June 19, 2024

      Application management policies allow for enhanced governance, management and control over application and service principal credentials in Entra ID tenant. [Read More]
      Tags:
      • Microsoft Entra ID
      • Governance
      • Security
      • Hardening
    • Newer Posts
    • RSS
    • GitHub
    • LinkedIn

    Lukasz Kozubal  •  2025  •  https://blog.identitylab.ch

    Powered by Beautiful Jekyll Icons by Freepik