A guide to boosting cybersecurity in your environment with Multi – Factor Authentication

Jeroen Jansen

Jeroen Jansen

GTM Manager Security

Read Time, 3 min.

You are the CEO of a large organization. It’s Saturday evening and you’re at home alone. When suddenly…

Your phone rings!

It’s your CISO. “Something terrible is happening,” they say. “We’re being hacked, right now!”

The attack has already paralyzed all your system and admin accounts – forcing multiple virtual machines within your Azure cloud environment to become activated and start using large amounts of data.

What do you do?

How does it start?

If you think this scenario sounds unlikely, then think twice. It’s much more common than you imagine. Cyberattacks are an increasingly ordinary occurrence in todays’ business world. They’re also often extremely easy to trigger – even a simple phishing email can cause them. Someone accidentally clicks on a link and if you or your organization haven’t taken the right measures, the attacker will have an open window to get in and take over.

 

Criminal organizations are often just as well organized as your average multinational company. One department is responsible for sending phishing emails, while another does research on people – selecting who to target based on their vulnerability. Meanwhile, there’s a specific division developing ransomware to encrypt data, and another tasked with negotiating and placing initial offers with the victim.

 

All of these are cells that work together on an outsourcing model that is highly professional and aimed at major victims. Especially lately. We’ve recently seen a major shift from hail shooting to targeted operations. Because the larger the fish, the higher the income.

 

Intruders

Hackers don’t have to hack, they just log in. Once your username and password have been stolen, the hacker is inside your network. Some criminals know a particular network even better than the system administrators themselves.

 

You don’t see them. They just stay under the radar until the moment comes to strike. As a person receiving regular emails, you should always be on your guard. You should be able to recognize a strange email as soon as you get it.

 

However, hackers are becoming more and more skilled. Sometimes it’s easy to miss something potentially malicious. They might use psychological tricks, such as time emergencies, to pressure you to click. So if you ever do click on the wrong e-mail, make sure that the impact is limited. Continuously backing up your files and data points is a proven, well-functioning defense strategy. You avoid losing everything, and at the same time you guarantee continuity.

 

The first line of threat protection starts with Multi-Factor Authentication

Endpoint protection starts with Multi-Factor Authentication (MFA). This means that every account within an organization should be protected with multiple types of identity protection. Priority should be given to Administrative and Systems accounts, which are more often targeted.

Safeguarding these accounts is your first line of defense to protect your (cloud) environment and improve your cloud security posture.

Using MFA on admin and system accounts is just one of many initiatives you can implement. It’s also important to think about the rights these accounts need. Does an admin account need access to other (public) networks? Are the rights of a system’s accounts still valid after many years?

Have you created a ‘broken glass’ account for worst case scenarios?

A lot of thinking and planning is needed when it comes to keeping your environment safe.

 

We’re here to help

At Microsoft, we understand that all this can be slightly overwhelming. But we’ve got you covered. To help you prevent data loss and secure data, we’ve created content on how to protect your environment.

The video above gives you an overview on how to enable MFA on admin accounts and on how to create broken glass accounts. We also show you how to monitor these accounts and manage non-used MFA accounts. There is also a presentation that you can download with further tips and tricks.

And, last but not least, we wrote a whitepaper about the nine basic rules you can implement to keep your environment and your users safe against hackers.

 

Protect your organization in a few simple steps.

Explore the benefits of multifactor authentication now.

Discover more related articles per industry:

Education

  • a person sitting at a table using a laptop

    How to enhance traditional teaching methods with Microsoft Teams

    COVID-19 has had a huge effect on the daily routines of millions of educators and students across the world. The Microsoft Education team has remained committed to helping everyone stay connected and engaged through remote learning. And now, as countries begin to emerge from the crisis, Microsoft is helping schools shift to ‘blended learning’ – […]

  • a young boy using a laptop computer

    Escolaglobal: a digital-first school for blended classroom and remote learning

    “This weekend, our preschool teachers created another video for the students – just saying hi and checking everyone was ok at home. Each teacher has their own Microsoft Stream channel, and the feedback from the kids and parents is amazing: “Hi, teacher! How are you? I remember you so well!” Nuno Moutinho, CEO of Portuguese […]

Government

  • a group of people performing on stage in front of a crowd

    City of Liège: Facilitating decision making in difficult times

    For many organizations, social-distancing measures brought about by COVID-19 have drastically slowed day-to-day operations – and for some, even stopped them altogether. But for local governments across Europe, like the Belgian city of Liège, slowing down hasn’t been an option.  From supporting citizens and businesses to protecting frontline workers, Liège city had to quickly provide stability during this crisis and ensure important decisions could still be made in a democratic […]

  • Ineco

    Ineco improves employee productivity with modern tools and AI

    Struggling with software doesn’t help people get more done. Likewise, if sharing files and collaborating on documents is difficult, productivity takes a hit. Ineco, a Spanish public sector company, understands this, which is why it set out to change the way employees interact with technology and one another. By deploying Microsoft 365 to its over […]

Healthcare

  • a woman standing in front of a screen

    Istituto Neurologico Carlo Besta: providing essential patient care from a distance

    “Telehealth was a technology we’d been planning to implement for a couple of years. But then almost overnight everything changed – it became a must-have platform the hospital needed today.” Francesca De Giorgi, CIO of Italian research hospital IRCCS Carlo Besta, reflects on the recent challenges her team faced when social distancing measures imposed by […]

  • NorthWest Clinics building

    Northwest Clinics: A new era in virtual healthcare

    “I am generally quite modest – I don’t like to brag about my achievements too much. But in this case, I want to make an exception. I want to tell the world what we have done.” For Ed de Myttenaere, CIO at Northwest Clinics hospital (Noordwest Ziekenhuisgroep) in the Netherlands, breaking with tradition is becoming increasingly normal. In responding to the COVID-19 outbreak, his team have implemented a virtual consultation solution that has the potential to redefine […]

Manufacturing

  • Mais on a sunny day

    COFCO International: How cloud technologies ensured business continuity during challenging times

    “I have worked at COFCO for 12 years, always in an office. But I have spent the last 63 days working from home.” Marcus Seelbach, Chief HR Officer at global agribusiness COFCO International, is talking from his home via video call about the transition he and all his colleagues have undergone since COVID-19 led to the closure of the company’s offices worldwide. “But thanks to the preparation and […]

  • a woman smiling for the camera

    Etex Group: Future-proofing employees to work anywhere across the world

    When COVID-19 spread across Europe in early 2020, businesses entered a new digitally-dependent age. Social distancing measures had asked offices of all shapes and sizes to close their doors, sparking organizations to quickly find other virtual ways for colleagues to meet and collaborate remotely. But for Belgium building material specialist Etex, this was a step they were ready for – having already implemented a cloud-based infrastructure and collaboration tools […]

Retail

Discover more related articles per dossier:

Customer Stories

  • Fitness24Seven

    Fitness24Seven: Flexing new muscle with Intelligent Communications

    Fitness24Seven is one of Europe’s fastest growing fitness brands. But the company found itself needing to connect dispersed teams and improve information sharing. As Stefan Hult, Senior Consultant at Stratiteq explains: “each location was in their own little world. There was really no sort of connection across the entire company.” The solution: Simplicity and flexibility […]

Digital Transformation

  • A group of students in front of a school

    PCOU Willibrord uses smart automation to define the future of education

    “It’s all about teaching and giving time to the educators, so they can give time to the students. If we can make IT simple, that’s my purpose, my thing.” Peter Schep, ICT Manager at PCOU Willibrord Foundation, explains why he believes efficient IT is central to the learning and development of both educators and students. […]

Security & Privacy

Tips

  • Lady on a Teams call at her computer

    5 reasons why you should start using Microsoft Teams today

    Collaboration and teamwork are the defining characteristic of modern organisations. Since its launch, Microsoft Teams has become the fastest growing app in Microsoft’s history with more than 330,000 companies worldwide using it. If you’re working in one of those companies, then you’re probably finding new ways to use the app on a daily basis. But […]