Jef Kazimer

573 posts

Jef Kazimer banner
Jef Kazimer

Jef Kazimer

@JefTek

Principal Product Manager @Microsoft #MicrosoftEmployee #Microsoft #Entra #Identity #EntraID - Tweets are my own

Chicago, IL เข้าร่วม Şubat 2007
2.9K กำลังติดตาม5K ผู้ติดตาม
EZ
EZ@IAMERICAbooted·
Who can tell me how many agents are connected to your Microsoft tenant and what are they doing? This is a problem I'm going solve.
English
7
0
28
4.6K
Jef Kazimer รีทวีตแล้ว
Fabian Bader
Fabian Bader@fabian_bader·
If you have a conditional access policy scoped to user action "Register security information" starting May 2026 the registration of Windows Hello for Business and macOS Platform SSO credentials will be in scope. #EntraID
Fabian Bader tweet media
English
2
27
117
8.1K
Jef Kazimer รีทวีตแล้ว
spencer
spencer@techspence·
On-prem is going to make a come back, yes or no?
spencer tweet media
English
27
3
61
8.8K
EZ
EZ@IAMERICAbooted·
@JefTek Its beyond that Jeff :) it has to do with SaaS apps being enumerable from the internet due to sp-initiated authn implementations. If its on the internet, attackers will do what attackers do :)
English
1
0
0
38
EZ
EZ@IAMERICAbooted·
Who can tell me what benefit having Named Locations/IP Allowlists when you already have FIDO2 for authn to SaaS? Think like an attacker. I'll wait, hopefully not too long.
English
13
2
36
6.9K
Jef Kazimer
Jef Kazimer@JefTek·
@IAMERICAbooted I can still walk up to an airport kiosk and use a FIDO2 key to get a token that could be stolen for example. Or maybe not wanting you to use your grandmothers PC to access work services even if using PR auth. Right control for right threat.
English
1
0
2
278
Jef Kazimer
Jef Kazimer@JefTek·
@IAMERICAbooted We have to think of authentication strengths of PR methods as an AND control and not the only control. Think layered controls. Require Phishing Resistant auth AND compliant device. Or PR auth AND allowed network.
English
1
0
2
282
EZ
EZ@IAMERICAbooted·
For everyone allowing unmanaged device connections to their network/m365, regular people now have full permissioned agents doing things on their behalf. 😆 🤣 😆 🤣 If you still allow access to your network from unmanaged devices, last year was the time to close that gap. Better late than never!
English
4
6
77
4.5K
Jef Kazimer
Jef Kazimer@JefTek·
RIP Adam the woo. 51 is so young to pass. We really enjoyed his travel and sharing his adventures.
English
0
0
3
533
Jon Towles {MVP}
Jon Towles {MVP}@m0bilej0n·
@JefTek @disneytipsguy @Kdodgers24 They were way overdo to make a kids book. They did a decent job on it too. Then they brought him back for character encounters which was a good move. His ride is a semi shit show, but I still like it as a Monty python fan.
English
1
0
3
48
Jef Kazimer
Jef Kazimer@JefTek·
@crisisofconsc I am so sorry. When my 21yo cat had a stroke it was best thing we could do for her in a loving way. It was hard and she fought so hard after an earlier incident but we know she was ready. We were lucky our vet came to our home to help us say goodbye where she was loved. ❤️
English
0
0
0
164
Crisis of Conscience
Crisis of Conscience@crisisofconsc·
I’ll be putting my baby to sleep tonight. His diagnosis is an aggressive large cell lymphoma, multiple masses near his heart and a very large one wrapping around his intestines in his stomach. Even with chemo he’d last 4-6 weeks, and that’s if it even works, he’s refusing food even on strong anti nausea meds, so I’m going to do the most compassionate option I have. He is the best cat and has been my best friend for 14 years.
Crisis of Conscience@crisisofconsc

Life decided I haven’t had enough lately, so it decided to give my cat terminal cancer for Christmas. Now I’m just waiting on whether this is carcinoma or lymphoma, both have a terrible prognosis, but carcinoma I’d be looking at days. Two years ago, we lost my mom’s cat right after Christmas, I hate this holiday.

English
75
0
226
9.6K
Jef Kazimer
Jef Kazimer@JefTek·
@NathanMcNulty @glueckkanja_ Nah you raised attention on it and I believe I talked to the right team this morning to look at it. I’ll check back with them after the holiday
English
0
0
2
123
Nathan McNulty
Nathan McNulty@NathanMcNulty·
@JefTek @glueckkanja_ Thanks Jef, wish I could have figured out a better way to fix it and make a PR, just not in my skill set :(
English
1
0
1
183
Nathan McNulty
Nathan McNulty@NathanMcNulty·
If you are using the Verified ID helpdesk sample with the Teams webhook (or are thinking about it), you should use @glueckkanja_ MyWorkID instead Microsoft's example is not safe, and I've tried enough times to reach the right PMs to get it fixed
Nathan McNulty tweet media
Fabian Bader@fabian_bader

@shane_cyber @NathanMcNulty @TechBrandon You can use my work ID. @Thomas_Live I and some other colleagues built it to allow for exactly this use case glueckkanja.com/en/security/my…

English
1
8
56
12.4K
Nathan McNulty
Nathan McNulty@NathanMcNulty·
@JefTek @glueckkanja_ Thank you Jef! We tried to chase things down through Elite partner support, GH issue, reached out to Harish, etc. I've tried to rewrite it to be 3 pages with the last one loading the JS, but I broke too many things well, technically AI broke them, but I can't code either :p
English
1
0
3
202
Jef Kazimer
Jef Kazimer@JefTek·
This was a present given to me that is going to take up all my holiday time being able to connect MS Graph via Microsoft Enterprise MCP with Log Analytics log activity data via github.com/microsoft/fabr…
GIF
English
0
0
1
241
Jef Kazimer
Jef Kazimer@JefTek·
@IAMERICAbooted I like the term "Informed Privacy" in that people be informed that what digital footprint is not private from those who have access to it, so operate appropriately.
English
1
0
1
64
EZ
EZ@IAMERICAbooted·
Today I found out Im going to work for 6 hours a day and get paid for 8 :p Why? PIM FOR Groups with Purview. Those who know, know.
English
3
0
20
542