{"id":117161,"date":"2020-08-25T20:09:02","date_gmt":"2020-08-25T20:09:02","guid":{"rendered":"https:\/\/news.microsoft.com\/?p=438844"},"modified":"2020-08-25T20:09:02","modified_gmt":"2020-08-25T20:09:02","slug":"cvp-ann-johnson-on-implementing-a-zero-trust-security-model-for-microsofts-remote-workforce","status":"publish","type":"post","link":"https:\/\/sickgaming.net\/blog\/2020\/08\/25\/cvp-ann-johnson-on-implementing-a-zero-trust-security-model-for-microsofts-remote-workforce\/","title":{"rendered":"CVP Ann Johnson on implementing a Zero Trust security model for Microsoft\u2019s remote workforce"},"content":{"rendered":"<div><img decoding=\"async\" src=\"https:\/\/www.sickgaming.net\/blog\/wp-content\/uploads\/2020\/08\/cvp-ann-johnson-on-implementing-a-zero-trust-security-model-for-microsofts-remote-workforce.png\" class=\"ff-og-image-inserted\"><\/div>\n<p><a href=\"https:\/\/www.microsoft.com\/en-us\/security\/business\/zero-trust\" target=\"_blank\" rel=\"noopener noreferrer\">Zero Trust<\/a> has always been key to maintaining business continuity. And now, it\u2019s become even more important during the COVID-19 pandemic to helping enable the largest remote workforce in history. While organizations are empowering people to work securely when, where, and how they want, we have found the most successful are the ones who are also empathetic to the end-user experience. At Microsoft, we refer to this approach as digital empathy. As you take steps to protect a mobile workforce, a <a href=\"https:\/\/www.microsoft.com\/security\/blog\/2020\/07\/16\/5-cybersecurity-paradigm-shifts-digital-experiences\/\" target=\"_blank\" rel=\"noopener noreferrer\">Zero Trust strategy grounded in digital empathy<\/a> will help enhance cybersecurity, along with productivity and collaboration too.<\/p>\n<p>This was one of a few important topics that I recently discussed during a cybersecurity fireside chat with industry thought leader, Kelly Bissell, Global Managing Director of Security Accenture. <a href=\"https:\/\/www.accenture.com\/us-en\/service-accenture-microsoft-avanade-cybersecurity-alliance\" target=\"_blank\" rel=\"noopener noreferrer\">Accenture, one of Microsoft\u2019s most strategic partners<\/a>, helps clients use <a href=\"https:\/\/www.microsoft.com\/en-us\/security\/business\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft 365<\/a> to implement a Zero Trust strategy that is inclusive of everyone. \u201cHow do we make working from home both convenient and secure for employees during this time of constant change and disruption,\u201d has become a common question both Kelly and I hear from organizations as we discuss the challenges of maintaining business continuity while adapting to this new world\u2014and beyond. I encourage everyone to explore these points more deeply by watching my entire conversation with Kelly.<\/p>\n<p>Our long-term Microsoft-Accenture security relationship helps customers navigate the current environment and emerge even stronger as we look past the pandemic. The following are some of the key steps shared during our conversation that you can take to begin applying digital empathy and Zero Trust to your organization.<\/p>\n<h2>Protect your identities with Azure Active Directory<\/h2>\n<p>Zero Trust is an \u201cassume breach\u201d security posture that treats each request for access as a unique risk to be evaluated and verified. This starts with strong identity authentication. <a href=\"https:\/\/azure.microsoft.com\/en-us\/services\/active-directory\/\" target=\"_blank\" rel=\"noopener noreferrer\">Azure Active Directory (Azure AD) is an identity and secure access management (IAM) solution<\/a> that you can connect to all your apps including Microsoft apps, non-Microsoft cloud apps, and on-premises apps. Employees sign in once using a single set of credentials, simplifying access. To make it even easier for users, deploy Azure AD solutions like <a href=\"https:\/\/www.zdnet.com\/article\/microsoft-150-million-people-are-using-passwordless-logins-each-month\/\" target=\"_blank\" rel=\"noopener noreferrer\">passwordless authentication<\/a>, which eliminates the need for users to memorize passwords. <a href=\"https:\/\/docs.microsoft.com\/en-us\/azure\/active-directory\/authentication\/concept-mfa-howitworks\" target=\"_blank\" rel=\"noopener noreferrer\">Multi-factor authentication (MFA<\/a>) is one of the most important things you can do to help secure employee accounts, so implement MFA for 100 percent of your users, 100 percent of the time.<\/p>\n<p>According to a new Forrester report, <a href=\"https:\/\/www.microsoft.com\/security\/blog\/2020\/08\/13\/new-forrester-study-customers-microsoft-azure-ad-benefit-123-roi\/\" target=\"_blank\" rel=\"noopener noreferrer\">The Total Economic Impact\u2122<\/a> of Securing Apps with Microsoft Azure Active Directory, customers who secure apps with Microsoft Azure Active Directory can improve user productivity, reduce costs, and gain IT efficiencies to generate a 123 % return on investment.<\/p>\n<h2>Secure employee devices<\/h2>\n<p>Devices present another opportunity for bad actors to infiltrate your organization. Employees may run old operating systems or download vulnerable apps on their personal devices. With <a href=\"https:\/\/www.microsoft.com\/en-us\/microsoft-365\/microsoft-endpoint-manager\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Endpoint Manager<\/a>, you can guide employees to keep their devices updated. Conditional Access policies allow you to limit or block access to devices that are unknown or don\u2019t comply with your security policies.<\/p>\n<p>An endpoint detection and response (EDR) solution like <a href=\"https:\/\/www.microsoft.com\/en-us\/microsoft-365\/windows\/microsoft-defender-atp\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Defender Advanced Threat Protection (Microsoft Defender ATP)<\/a> can help you detect attacks and automatically block sophisticated malware. Each Microsoft Defender ATP license covers up to five devices per user.<\/p>\n<h2>Discover and manage cloud apps<\/h2>\n<p>Cloud apps have proliferated in today\u2019s workplace. They are so easy to use that IT departments are often not aware of which cloud apps their employees access. <a href=\"https:\/\/www.microsoft.com\/security\/blog\/2020\/07\/07\/new-study-customers-save-time-resources-improve-security-microsoft-cloud-app-security\/\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Cloud App Security<\/a> is a cloud app security broker (CASB) that allows you to discover all the apps used in your network. Cloud App Security\u2019s risk catalog includes over 16,000 apps that are assessed using over 80 risk factors.&nbsp;Once you understand the risk profile of the apps in your network, you can decide whether to allow access, block access, or onboard it on to Azure AD.<\/p>\n<p>Employees are busy in the best of times. Today, with many working from home for the first time\u2014often in a full house\u2014their stress may be compounded. By simplifying the sign-in process and protecting data on apps and devices, <a href=\"https:\/\/www.microsoft.com\/en-us\/security\/business\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft 356 security<\/a> solutions like Azure AD, Microsoft Defender ATP, and Cloud App Security, make it easier for employees to work remotely while improving security for the organization.<\/p>\n<p>Digital empathy and Zero Trust are also two of the <a href=\"https:\/\/www.microsoft.com\/security\/blog\/2020\/07\/16\/5-cybersecurity-paradigm-shifts-digital-experiences\/\">five security paradigm shifts that will lead to more inclusive user experiences<\/a>. Next month, I will provide more details about two additional paradigm shifts, the diversity of data, and integrated security solutions.<\/p>\n<p>CTA: To learn more about Microsoft Security solutions visit our&nbsp;<a href=\"https:\/\/www.microsoft.com\/en-us\/security\/business\/solutions\" target=\"_blank\" rel=\"noopener noreferrer\">website.<\/a>&nbsp; Bookmark the&nbsp;<a href=\"https:\/\/www.microsoft.com\/security\/blog\/\" target=\"_blank\" rel=\"noopener noreferrer\">Security blog<\/a>&nbsp;to keep up with our expert coverage on security matters. Follow Ann Johnson <a href=\"https:\/\/twitter.com\/ajohnsocyber\" target=\"_blank\" rel=\"noopener noreferrer\">@ajohnsocyber<\/a> for Microsoft\u2019s latest cybersecurity investments and <a href=\"https:\/\/twitter.com\/@MSFTSecurity\" target=\"_blank\" rel=\"noopener noreferrer\">@MSFTSecurity<\/a>&nbsp;for the latest news and updates on cybersecurity.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Zero Trust has always been key to maintaining business continuity. And now, it\u2019s become even more important during the COVID-19 pandemic to helping enable the largest remote workforce in history. While organizations are empowering people to work securely when, where, and how they want, we have found the most successful are the ones who are [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":117162,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[49],"tags":[50,52],"class_list":["post-117161","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-microsoft-news","tag-recent-news","tag-security"],"_links":{"self":[{"href":"https:\/\/sickgaming.net\/blog\/wp-json\/wp\/v2\/posts\/117161","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/sickgaming.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/sickgaming.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/sickgaming.net\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/sickgaming.net\/blog\/wp-json\/wp\/v2\/comments?post=117161"}],"version-history":[{"count":0,"href":"https:\/\/sickgaming.net\/blog\/wp-json\/wp\/v2\/posts\/117161\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/sickgaming.net\/blog\/wp-json\/wp\/v2\/media\/117162"}],"wp:attachment":[{"href":"https:\/\/sickgaming.net\/blog\/wp-json\/wp\/v2\/media?parent=117161"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/sickgaming.net\/blog\/wp-json\/wp\/v2\/categories?post=117161"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/sickgaming.net\/blog\/wp-json\/wp\/v2\/tags?post=117161"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}