Listen "Common PIM mistakes"
Episode Synopsis
Takeaways
Privileged Identity Management (PIM) allows for just-in-time activation of privileged roles.
Configuring MFA in PIM can have different experiences depending on the authentication method used.
Mitigations for MFA in PIM include setting a lower sign-in frequency and not allowing persistent sessions.
Authentication context in PIM allows for additional conditional access policies to be applied after authentication.
Requiring approval to activate roles in PIM can help ensure proper oversight and control.
Mitigating role lockout in PIM involves having a break glass account for emergency access.
PIM can be used for non-Microsoft apps, allowing for just-in-time elevation of privileges.
Expanding PIM to non-Azure resources opens up new possibilities for managing privileged access.
-------------------------------------------
Youtube Video Link: https://youtu.be/uagtZ4KyB8k
-------------------------------------------
Documentation:
https://campbell.scot/pim-common-microsoft-365-security-mistakes-series/
----------------------
Contact Us:
Website: https://bluesecuritypod.com
Twitter: https://twitter.com/bluesecuritypod
Threads: https://www.threads.net/@bluesecuritypodcast
Linkedin: https://www.linkedin.com/company/bluesecpod
Youtube: https://www.youtube.com/c/BlueSecurityPodcast
Twitch: https://www.twitch.tv/bluesecuritypod
-------------------------------------------
Andy Jaw
Mastodon: https://infosec.exchange/@ajawzero
Twitter: https://twitter.com/ajawzero
LinkedIn: https://www.linkedin.com/in/andyjaw/
Email: andy@bluesecuritypod.com
-------------------------------------------
Adam Brewer
Twitter: https://twitter.com/ajbrewer
LinkedIn: https://www.linkedin.com/in/adamjbrewer/
Email: adam@bluesecuritypod.com