Companial está realizando un cambio en la forma en que se presenta su plataforma de aprendizaje
Leer másSecurity on Azure
Wednesday, December 7, 2022
Reading time: 2 minutes
Dear partner,
In this news update, we’ll talk about securing our own and customer environments. Over the last couple of years, Microsoft has implemented many measures to protect Microsoft 365 (formerly Office 365) and Azure environments from being compromised. The huge investment in security for both the cloud services and other Microsoft products has resulted in a very good track record. However, we are all aware that in many cases, the human factor (aka our employees) is the weakest link. Many of the of random attacks we hear about come back to the leaking of passwords via phishing links/sites. When we consider security measures, we take into account that we can’t guarantee human behavior. That means we must assume that passwords will be compromised as a rule. Luckily, there is a solid solution to maintain security despite this: multi-factor authentication (MFA). By requiring another ‘factor’ such as a mobile phone with an authenticator app, we can make sure that a leaked password on its own is not enough to compromise your organization.
As a Microsoft Partner, you likely have access to many customer environments. Therefore, security is probably one of the biggest risks your company faces. Microsoft took a major step forward by enforcing MFA for all administrative accounts with partner center roles, helping to increase our security and raise awareness of need for security measures.
In the last months, we have seen many attacks on these accounts, both via ransomware but also because of break-ins within Azure environments. In one example of the latter scenario, the hacker gained administrative access to a CSP Azure subscription and installed crypto-mining software within a large-scale infrastructure. With the execution of one script, they deployed an infrastructure over many regions in the world with a cost exceeding 10 thousand euros per day!
The call to action:
- Implement MFA for all your customer environments as soon as possible (for both preventing Azure attacks but also random ware)
- Implement Azure Lighthouse for all customers using Azure. Lighthouse provides you the option to monitor usage of Azure within your customer tenants. Do keep in mind that budgets are for monitoring only and will not enforce a spending limit!
We are here to support you!
Wouter Abma is responsible for IT and operations, which gives him the ability to adapt business processes quickly or change according to ever-changing world dynamics. Wouter is a strong team player, and his focus is to build a team he can rely on. His background in IT security consulting, compliance and operations management enables him to improve business flows and build exceptional IT solutions.
- Strengthening Security: The Significance of Holding an ISO 27001 Certificate - 21/06/2023
- Security on Azure - 19/12/2022
Más noticias
Companial at DynamicsMinds 2026
Resumen de DynamicsMinds 2026: cómo convertir el bombo publicitario en torno a la IA en resultados reales, hábitos e ingresos ...
Leer másCompanial at Directions NA 2026
Companial en Directions NA: apoyamos a los socios de Dynamics con sesiones especializadas para impulsar el crecimiento y la estrategia.
Leer másCompanial and Fênix announce strategic alliance to strengthen Business Central support in Brazil
Companial y Fênix combinan la distribución de valor añadido, los servicios y la localización certificada para ayudar a los socios ...
Leer másCompanial expands to Brazil, strengthening the Dynamics ecosystem in LATAM
La llegada de Companial a Latinoamérica, y específicamente a Brasil, refuerza su compromiso a largo plazo con el ecosistema de ...
Leer másWhat is new for Consultants in Empowered BC 2.30.0.0 Release
Resumen de los cambios más importantes introducidos en Empowered BC con la versión 2.30.0.0, que puede utilizarse para un aprendizaje ...
Leer más