Matt

654 posts

Matt banner
Matt

Matt

@muthmsir

IT Consultant, Intune, Entra, Defender, Purview, ConfigMgr, Blogger, M365, and other IT stuff

United States Katılım Mayıs 2012
343 Takip Edilen253 Takipçiler
Matt
Matt@muthmsir·
🔐 UEFI Secure Boot Certificate 2023: A quiet change with big security impact. Firmware security doesn’t usually make headlines, but it should. The 2023 Secure Boot Certificate update is a key step in strengthening trust at boot time and mitigating real world threats 📷If you work with: 📷 UEFI firmware 📷 Enterprise security or IT operations This breakdown is for you 📷#WindowsSecurity" target="_blank" rel="nofollow noopener">shorturl.at/vqqeu#WindowsS#MSIntune #SecureBoot
English
0
0
0
1.5K
Matt
Matt@muthmsir·
🔐 UEFI Secure Boot Certificate 2023: A quiet change with big security impact Firmware security doesn’t usually make headlines, but it should. The 2023 Secure Boot Certificate update is a key step in strengthening trust at boot time and mitigating real world threats 🛡️ If you work with: ✅ Intune Admin ✅ UEFI firmware ✅ Enterprise security or IT operations This breakdown is for you 👇 shorturl.at/vqqeu #WindowsSecurity #MSIntune #SecureBoot
English
0
0
0
74
Matt
Matt@muthmsir·
@xenappblog @CynicLib @MSIntune @kaidja I worked this week on the same issue, about to release a full blog on how to fix it by gpo or intune policy with a dashboard.
English
0
0
3
527
Trond Eirik Haavarstein
Trond Eirik Haavarstein@xenappblog·
One Platform Script that will instantly fix most of your Secure Boot Status Not up to date in @MSIntune Why is nobody other than @kaidja talking about this? Try it out and give it 24 hours. WinCsFlags.exe /apply --key F33E0C8E002
Trond Eirik Haavarstein tweet media
English
7
25
143
9.2K
Jeff
Jeff@jeffirvine·
@muthmsir Also, don't sign into your privileged account on a shared device and definitely DO NOT leave it unlocked and unattended!
English
1
0
1
57
Matt
Matt@muthmsir·
🔐 Quick Intune security win you might be missing If you’re an Intune admin, leaving the console open while inactive is a real risk; it happened to me sometimes until PIM timeout. However, many customers I worked with do not even have PIM. ✅ Enable “Sign me out when inactive” in the Microsoft Intune admin center ✅ Automatically signs out idle sessions ✅ Reduces risk on shared or unlocked devices ✅ Aligns with zero‑trust and least‑privilege principles 📍 Portal settings → Signing out + notifications Small setting. Big security impact. I personally think 1 hour away is more than enough to sign the admin out. #MSIntune #EndpointSecurity #ZeroTrust #IAM #CloudSecurity
Matt tweet media
English
1
3
15
1.7K
Matt
Matt@muthmsir·
🔐 Quick Intune security win you might be missing If you’re an Intune admin, leaving the console open while inactive is a real risk; it happened to me sometimes until PIM timeout. However, many customers I worked with do not even have PIM. ✅ Enable “Sign me out when inactive” in the Microsoft Intune admin center ✅ Automatically signs out idle sessions ✅ Reduces risk on shared or unlocked devices ✅ Aligns with zero‑trust and least‑privilege principles 📍 Portal settings → Signing out + notifications Small setting. Big security impact. I personally think 1 hour away is more than enough to sign the admin out. #MSIntune #EndpointSecurity #ZeroTrust #IAM #CloudSecurity
Matt tweet media
English
3
4
49
5.4K
Matt
Matt@muthmsir·
@ar4nier Aaron, I usually run the assessment before I start, midway through the project, and at closeout, I show the customer the differences based on the run date. use the date by the end of the page
Matt tweet media
English
0
0
1
33
Aaron
Aaron@ar4nier·
@muthmsir ... and secure score doesn't provide history that goes back far enough.
English
1
0
0
40
Matt
Matt@muthmsir·
ZeroTrust Workshop is now available on the web instead of in an Excel sheet. Last week, Microsoft announced the updated, 🚀brand new ZeroTrust Workshop. Most of us used the Excel sheet with our customers. We hoped to see this Excel sheet on the web, like the ZeroTrust Assessment. Now, I just want to give a big thanks to ✨Tarek Dawoud and @merill . Of course, there are many great people behind this, but unfortunately, I do not know their names. Once you complete a few of them, you'll see the score and how much is left to meet the ZeroTrust. Report before you complete anything Try it 👉 zerotrust.microsoft.com
Matt tweet mediaMatt tweet mediaMatt tweet mediaMatt tweet media
English
6
61
308
31.6K
Matt
Matt@muthmsir·
@ar4nier Do this with a Zero Trust Assessment, which will provide you with all details about your environment.
English
1
0
0
39
Aaron
Aaron@ar4nier·
@muthmsir I would love if they could make a sign-in option for this url that would pull up your results at a tenant level so we don't even have to maintain the previous assessment results. Like a permanent artifact to supplement the secure score ecosystem
English
1
0
0
50
Matt
Matt@muthmsir·
@EFromeden Have you visited the Microsoft Zero Trust Workshop page? If so, select any step that is’Nor Review’, then from the bottom select In progress, completed, not applicable, etc. Check it and let us know.
English
0
0
0
25
edem fromEden
edem fromEden@EFromeden·
@muthmsir Okay but where are the steps ? All I see is a interactive web page
English
2
0
1
126
Matt
Matt@muthmsir·
@EFromeden Microsoft Workshop is a platform IT uses to achieve zero trust by following the steps outlined.
English
1
0
0
564
Matt
Matt@muthmsir·
@ar4nier Yup, I think it was built by a mix of PowerShell, HTML, JavaScript, not sure what else
English
1
0
0
474
Aaron
Aaron@ar4nier·
@muthmsir They started designing the results to be in a powerBI format. Didn't make it suck less. This is a major improvement.
English
1
0
0
635
Matt
Matt@muthmsir·
ZeroTrust Workshop is now available on the web instead of in an Excel sheet. Last week, Microsoft announced the updated, 🚀brand new ZeroTrust Workshop. Most of us used the Excel sheet with our customers. We hoped to see this Excel sheet on the web, like the ZeroTrust Assessment. Now, I just want to give a big thanks to ✨Tarek Dawoud and @merill . Of course, there are many great people behind this, but unfortunately, I do not know their names. Once you complete a few of them, you'll see the score and how much is left to meet the ZeroTrust. Report before you complete anything Try it 👉 zerotrust.microsoft.com
Matt tweet mediaMatt tweet mediaMatt tweet mediaMatt tweet media
English
0
3
7
1.1K
Matt
Matt@muthmsir·
🛡️ IT teams shouldn’t wait on cybersecurity reports to find vulnerabilities. I built a local Vulnerability Dashboard that checks MSRC + limited app CVEs—no API or Entra app needed ✅ Shows critical/high vulns ✅HTML dashboard ✅ Fast device insights ✔️ Helps teams fix issues before the cyber team pings them 👍🏻Grab it on GitHub: github.com/Muthannaaljana… Read the blog📷 Vulnerability Dashboard – Texas Tech Squad 👉 shorturl.at/w7id4 #cybersecurity #MSIntune #Windows #Microsoft
English
1
7
87
7.7K
Matt
Matt@muthmsir·
🚀 It's great to see MAA featured in the banner pop-up on my Intune home page today, reminding us to secure our Intune. #MSIntune #Microsof
Matt tweet media
English
0
0
0
108
Matt
Matt@muthmsir·
🔐 Security standards such as CIS Benchmarks are influential; however, their effectiveness depends on careful implementation. A minor oversight in a Level 2 M365 policy provided me with a valuable lesson in balancing security and usability. 👇 shorturl.at/q1fuO
Matt tweet media
English
1
3
44
3.4K
Matt
Matt@muthmsir·
🔐 Security standards such as CIS Benchmarks are influential; however, their effectiveness depends on careful implementation. A minor oversight in a Level 2 M365 policy provided me with a valuable lesson in balancing security and usability. 👇 shorturl.at/q1fuO
Matt tweet media
English
0
0
0
83
Matt
Matt@muthmsir·
Ever patch a device and still get slammed with vulnerability reports? 😅 I built a local-run Vulnerability Dashboard to give IT pros immediate visibility—no APIs, no Entra app, just PowerShell + HTML. 🔍 Checks MSRC 📦 Shows limited app CVEs 1/2
English
1
0
0
83