
Zero Trust Identity Controls - Essentials Series - Episode 2
AMEN@12
Description
<p>Tour your identity options when moving to the Zero Trust security model. Our last Essentials episode gave a high-level overview of the Zero Trust security model principles: identity, endpoints, applications, networks, infrastructure, and data.</p> <p>Join our host, Jeremy Chapman, as he unpacks the foundational layer of the model with identity. As the primary control plane for Zero Trust, it acts as the front door for people, service accounts, and devices as each requests access to resources. Identity is at the core of the Zero Trust concepts of never trust, always verify and grant the appropriate level of access through the principle of least privilege.</p> <p>Verify Explicitly<br /> Azure AD - easily implement additional protections to verify explicitly<br /> Multi-factor authentication (MFA) - requires an additional authentication factor. Replace passwords with Microsoft Authenticator, Windows Hello, or FIDO2 keys.<br /> Activity reports in the Authentication methods - see who’s capable of MFA and passwordless authentication, how many recent registrations and by type.<br /> Usage - see the distribution of MFA sign-ins and by method, as well as the number of password changes and resets.</p> <p>Least Privilege access<br /> Conditional Access in Azure AD - uses real-time intelligence at the time of sign-in to assess the risk level, then blocks or grants access.<br /> Built-in Insights and Reporting - expose the impact of enabled policies pre- and post enforcement.</p> <p>► QUICK LINKS:</p> <p>00:00 - Introduction<br /> 00:37 - Demo in Azure AD<br /> 01:47 - Azure AD Application Proxy<br /> 02:50 - How to set up multi-factor authentication<br /> 04:44 - Activity Reports for admins<br /> 05:21 - Least privileged access and conditional access<br /> 07:22 - Conditional Access Insights and Reporting<br /> 08:16 - Wrap up</p> <p>► Link References:<br /> <br /> For tips and demonstrations, check out our series at <a href= "https://aka.ms/ZeroTrustMechanics">https://aka.ms/ZeroTrustMechanics<br /> </a><br /> Learn mor