Identity governance has rapidly evolved from a compliance checkbox into a cornerstone of modern Zero Trust security, especially as organizations adopt cloud-first architectures and AI-driven workflows. I recently sat down with Ramiro Calderon, Principal Product Manager at Microsoft; Jef Kazimer, Principal Product Manager on the Microsoft Security Entra Identity Platform; and Tee Earls, Product Area…
Last Update: Mar 19, 2026
The Group Policy Management Console (GPMC) is an essential administrative tool that Windows admins can use to centrally configure and manage Group Policy Objects (GPOs). GPMC is a Microsoft Management Console (MMC) snap-in used by administrators to centrally create, manage, and deploy GPOs in Active Directory. Accessing the Group Policy Management Console There are several…
Last Update: Mar 18, 2026
In this article, I explain the principles, challenges, and consequences of Data Loss Prevention (DLP). What is Data Loss Prevention? Data Loss Prevention, or DLP as it is often referred to, is a set of policies and technologies that are collectively designed to prevent an organization’s sensitive data from being leaked. How does data leakage…
Security leaders have always had to manage “the next new thing.” The difference now is that the next new thing can take actions. We are entering a phase where the most dangerous failures won’t start with an exploit. They’ll start with a model being convinced to press the wrong button. That is the real shift…
Learning how to triage emails in Outlook effectively is becoming a core productivity skill. Inbox volume continues to rise, and traditional tools such as folders, rules, and flags only go so far. Microsoft 365 Copilot in Outlook introduces AI‑assisted triage that helps you quickly understand what matters, decide what action to take, and move on….
Hyperscalers like Microsoft, Google and Amazon Web Services must manage and maintain millions of servers and datacenter equipment. In this article, I look at why hyperscalers use AI and predictive maintenance to improve uptime and reduce staffing costs. Managing large-scale datacenter environments with predictive maintenance In environments with thousands of servers and complex infrastructure, traditional…
When a user account becomes locked, account lockout event id 4740 is logged on your domain controllers. It is the primary signal administrators rely on to begin troubleshooting. While the event itself is straightforward, interpreting it correctly and using it effectively to identify the true source of a lockout is not always obvious. What is…
Last Update: Feb 24, 2026
In this article, I look at Personally Identifiable Information (PII) and why it’s important to identity and protect it in your organization. What is PII data? Personally Identifiable Information (PII) refers to any information that can be used to identify a specific individual. Types of PII Although all personally identifiable information is linked to a…
IT pros are already using AI to write scripts, summarize logs, and troubleshoot issues. The catch? Most workflows still involve a clumsy relay race: copy text from a remote session, paste it into a chatbot, copy the answer back, then repeat. All while hoping you don’t leak something sensitive into chat history. Marc-André Moreau, CTO…
The focus shouldn’t be just on restoring AD functionality but on restoring trust ensuring the recovered environment is clean, uncompromised, and validated before reconnecting to production. Trust is the new metric for Active Directory Forest recovery Modern day Active Directory (AD) recovery isn’t just about restoring AD; it’s about restoring trust. Active Directory is still…