Showing posts with label security. Show all posts
Showing posts with label security. Show all posts
by

Live Show: Business Productivity Reinvented

image

Title: Productivity Reinvented

Session Abstract: Edge is joined by Ryan Darby to discuss how Office 365 is Microsoft's fastest-growing commercial product ever and is now the number one deployed application in the enterprise. It is the company's most profitable business and productivity product. but how does this translates into productivity for business users and project delivery.​​

Suitable For :    Business Analyst, Consultant, IT Architect, IT Pro, Sales
Track :    Collab365 Live Show
Live Video :
Live Show – Business Productivity Reinvented

by

Live Show: Office 365 User Adoption

image


Title: Office 365 User Adoption

Session Abstract: In this session Edge is joined by Sonia Cuff MVP and Paul Woods.

End-users often see technology from a very personal point of view. While IT is likely focused with the mechanics and logistics, your clients, the users are scratching their heads thinking "what's the real benefit here?". Cue for the adoption strategy. With Office 365 becoming so pervasive in our business, adoption is now a key consideration in any rollout. Let's discuss the challenges, the goals and risks of this fascinating topic.​​

Suitable For : Administrator, CIO, COO, CFO, CMO, CTO, End User, Power User

Track : Collab365 Live Show

Live Video: Live Show – Office 365 User Adoption

by

Collab 365 Conference: 10 Myths About Moving Your Project Management to the Cloud

image

Title: 10 Myths About Moving Your Project Management to the Cloud

Session Abstract: Most companies that go to the cloud do so because they need business agility and cost savings. But how can you know if you're getting all the benefits? Or worse, what are you missing? Let's separate fact from fiction and bust these 10 myths about moving your projects to the cloud.​

You Will Learn : 

  • How to make your projects more agile and effective
  • How to increase savings on your projects
  • Cloud security
  • Protecting your business against hackers in the cloud

Suitable For :    Business Analyst

Download Slides: Collab 365 – Edge Pereira - 10 Myths About Moving Your Project Management to the Cloud

by

The Case for Privileged Access Control


Another day, another big data leak. Do you have a minute? Let's talk a bit about basic security and how even the “big guys” can have it wrong.

Since you're a young IT professional you hear the mantra that login credentials (username, password etc) should never be shared nor written in plain-text (Hello, TickeTek!!). So, why do we keep seeing these things in workplaces? Passwords for network shared on stick notes, handwritten in walls, displayed in big monitors for the sake of convenience…

image

image

The answer is: Unfortunately, this is quite a common practice and worst coming from bad decision making.

The Weakness Stand

According to a report from Centrify: State of Corporate Perimeter about 50% of the USA and 1/3 of UK leaders believe it is easy for someone with old passwords to login into company systems.

Even considering that most of the companies have an off-boarding process for contractors, it can take up to a week to completely sanitize access rights and passwords to all the sensitive data once handled by those individuals. One week is enough time for anyone with ill intentions to go back and hack into systems. And that isn't a rare incident.

image

Privileged Accounts: Free as in Free Beer

It gets worse. The report revealed that privileged accounts for systems, and network devices are being shared without any policies to protect them. 40% of U.K. IT leaders working for big companies (over 500 employees) said more than 10% of their staff have privileged access to data in some form.

This number jumps to 50% for small and mid-sized companies (less than 500 employees). Too many people with too much, unnecessary, power in their hands. We are talking about confidential and highly sensitive information kind of access. Rightly so, 62% of U.S. IT leaders believe their companies have too many privileged users. Look at this: Security Auditors guess Australian government database passwords on first attempt! That’s shocking!

image

Cultural Differences?

Now one thing to consider. This report was done with 200 companies in the USA and 200 in the UK. One might think that a more liberal economy would pose a bigger risk to IT security systems. Truth is, it does not. The overall pattern is consistent across all groups in both countries. For example, around 50% percent of all companies involved in the study confirmed that their companies had a data breach. And the bad guys are there for the taking like sharks.

A Backup Always Work, The Restore Is What Fails

Almost all companies have some sort of identity keys in place but nearly half of them have monitoring, auditing or privileged identity management in place. Quite surprising, 1/3 of these companies don't have trained employees to respond to a data breach or how the accounts are used. They are simply given to folks and trusted they will do good with them. No wonder so many breaches happens.

The Disaster is a Decision

Often times we hear that a disaster is a series of small events that lead to a big event. It is very surprising that experienced senior managers and leaders on this day and age are still following bad decision making frameworks, yet admitting they do need to do a better job with their data. The quote "When a data leak happens, it is probably your fault" is becoming more alive than ever.

by

I am Speaking at the Collab365 2016 Event

Once again I got confirmed as a speaker for the Collab365 Conference. This is one of the coolest conferences around from the people organizing it to the folks participating online. A single session can easily reach thousands of people, so you can imagine my excitement. And as a plus, it is always great being at Microsoft HQ in Redmond. Also a good time to reconnect with folks from the Office 365 team in their offices. (*cough*also visit the Microsoft store*cough*)

400x133_speakerbadge_summit.jpg (400×133)

My session is as usual around Office 365 Compliance and Data Protection and it is called: "Office 365 eDiscovery: DLP for your Business and Your Data".

Join the Collab365 Summit and watch the sessions, there is an incredible amount of brilliant minds and souls behind this event, doing this for the community at large.

Where Can You Get More Information and Watch the Sessions?

Go to http://collab365.events/collab365-summit-2016/ . You can also follow the twitter @Colla365 and the hashtag #Collab365

Also, who doesn’t love an opportunity to visit Microsoft Headquarters in Redmond Smile

image

image

by

Microsoft vs Apple vs Facebook vs Google vs Amazon (in 2017)

Here some interesting stats collated by Visual Capitalist. I thought of creating this post just so I can reference it later. In short:

  • Microsoft is the leader in portfolio diversification.
  • Apple and Alphabet have a good portfolio but little diversity.
  • Amazon has good market cap and some diversity.
  • Facebook is a one-trick pony Smile

Apple

apple

Microsoft

microsoft

Alphabet

alphabet

Facebook

facebook

Amazon

amazon

Source: companies annual reports, May/2017 – visualisation by www.visualcapitalist.com

by

My Project Online Administrator is Locked! How to Fix?

Today I've got a call from a very worried customer: "Help, our Project Online Administrator got locked out! What do we do???"

2VZ4uXm

First, let's bring calm into the conversation. You know people will live after that. If your Project Administrator got locked don't panic, the site collection administrator automatically has administrative privileges. So to fix it quickly, ask the tenant or SharePoint online admin to fix this for you and assign you or someone as site collection admin and then you can go and fix the Project Admin. Done!

Now let’s talk about the B-side.

First, How Did you Get Into this Situation?

james-franco

I know, soul searching is not easy. If you know what caused the issue, great otherwise you should start asking questions. That's a very important first step to understand what happened. Generally think about the last steps performed in the site. Look for things like:

  • Any changes happened to the Administrators in Project Server or in the Administrators from Active Directory
  • Any synchronization happened to the AD group in the Resource Center. Maybe this happened and your Admin became inactive.
  • Any bulk password changes happened in your organization
  • Any user migration recently happened in your organization

You know, things like this to give you a sense of what caused the issue.

So well done! You fixed the problem and you understood what happened.

TGIF-gif-friday-leaving-the-office-party-time

Let's Learn from this Event…

Let's lay the basics out here. Your company's Office 365 tenant have:

  • A global administrator,
  • A SharePoint administrator,
  • A site collection administrator,
  • A Project Online administrator.

Experience tells us that 90% of the time, there is someone which is incorporate ALL of these roles. Pick the person that is the Global Administrator and let's have a chat with this person and find out if anything special has been done to the Project Administration role. If this is the person that helped you reverting the situation as we talked before, even better. Discuss the situation with him/her. Share with him what  you think caused the lock.

What About Licencing?

Often times Active Directory changes alone can fix lockout situations, in these cases a site collection admin does not require a dedicated Project Online license. The challenge here is sometimes to fix the issue, the person needs to log into Project Online and in this circumstance the site collection administrator needs a Project Online license. It’s possible that he or she already has one.

I Don't Have Licences Left. What Do I Do?

You can temporarily remove licences from an user and assign to other for this. The licences are not named licences, so that's a perfectly legal manoeuvre. Better yet, remove the license assigned to the locked out user since he/she is not able to use it anyway while you fix this.

by

How Secure is my Data in the Cloud?

This is by far the most common question I get when talking to people about cloud migrations. And rightly so, information security (together with data privacy) is amongst the top concerns for businesses looking to go to the cloud computing.

image

To be quite frank:

  1. Generally the data stored in the cloud is very secure and
  2. Most likely it is safer then it currently is in your company.

 

A New Model Brings New Threats

Now let’s not make a mistake here, cloud computing does raises security issues that are not typically found when your data is stored on-premises in your own building. So much so that industry standards are still adapting to cloud specific challenges. For example, not many people realises that your company data might be stored in a common datacenter where data from other companies are stored as well. The concept of multi-tenancy scares a hell of a lot of people.

 

Who is Ultimately Responsible for Securing my Information?

This is an important question and before we answer that, let’s take a step back and discuss the matrix of responsibility here. To answer that question, first we need to assert the nature of the information stored because it is the data sensitivity who will dictate the level of infrastructure security necessary.

OK, so now that we have that in mind, the second part is about addressing the responsibility. The cloud provider is most likely to be responsible for the security and privacy controls which will be available to you.

Then now you have it:

  1. The cloud provider is responsible for the infrastructure lockdown, and
  2. the customer is the one who drives the data protection requirements.

It does not matter that you store your data in the cloud but still uses weak password controls or poorly governed processes around your business and data access, right? That’s why a proper cloud security assessment is so important because most likely, when a data breach happens it is because of you. Don’t be ashamed to assume if you have, weak security controls is something very pervasive in our industry as you can see here.

 

What Are my Responsibilities as a Cloud Customer?

You need to understand what security controls your business need, what data breach controls you want, what regulatory needs your industry requires etc. Cloud companies like Microsoft or Amazon won’t know that. It is your job to know that and bring it to the discussion table. Like I said before, these cloud companies are extremely capable and secure so normally it is up to the customer to up their game.

In short you as a customer have to:

  • Understand your data sensitivity
  • Ensure your chosen cloud provider offers the controls your business need

So there you have it. Generally the conversation here evolves to So nothing ever goes wrong in the cloud? Are you telling me that data breaches never happen?”…no, but this is a talk for another day.

See ya later!

by

From #AshleyMadison to #PanamaPapers : Office 365 is Bringing Sexy Back to Cloud Compliance and #eDiscovery

When a data leak happens and people are affected judicially, specially suing and being sued, this starts a very long, tiring and expensive process. eDiscovery is one of the most complex parts of the whole game.

In this session we will talk about what’s eDiscovery, how big companies do it, how expensive it is and how can Office 365 help you. So if you are around Brisbane, Australia on April 14th come and join us. Bring your laptops, tablets, iPads, mobile and we will do some demos and play some roles. It will be fun Smile

Where Can I Get the Presentation Slides?

 You can get the slides here.

image

image

by

Microsoft EMS Usergroup Presentation: EMS - Everybody Together Now!

I love talking to the local cloud community. These guys are a good bunch of folks that put their own time and resources to bring innovative and up-to-date content for everyone to see for free! Big shout of to Aaron, from Microsoft for the support.

This week I presented to the Microsoft Cloud User Group in Brisbane, Australia. We talked about EMS in a demo-heavy session!

image

For this session we set vert ambitious targets in terms of demos. My opinion is that EMS is a fantastic but only through hands-on experience is how people realise the value proposition of this product. We ended up doing 40 minutes of demos with Q&A as needed. Great engagement!

BYOD Device Management and ATA Advanced Threat Analytics 

image

image

 

Where Can I Get the Presentation Slides ?

If you’re interested in the slides, they are here: EMS Everybody Together now! – Microsoft Brisbane Cloud Usergroup

As always, feel free to reach out if you would like to know more.

by

IoT, Office 365 and the Prime Position of STEM Kids in Australia


5 million new IoT (Internet of Things) devices will come online every day in 2016. How can companies join the party for a piece of this 50 billion dollars’ cake?

Come to Microsoft Innovation Centre in Brisbane (level 28, 400 George st, Brisbane) and join me to discuss:

  • The state of connected devices in Australia,
  • How can we use IoT and Office 365, and
  • Why Australians are in a prime position to lead the world in this area and the role of the STEM programs for kids is an important strategic move in the innovation agenda.

image

image

image

 

Where Can I Download the Presentation Slides?

You can download the slides for this presentation here.

by

I’ll be at the GovHack Australia 2016!

I am humbled, honoured and excited to be part of the GovHack Australia 2016. I will be there as a Team Leader helping with the idea and concepts of the solution. If you never heard about this event, let me explain a bit more about what it is.

image

What is GovHack?

GovHack is an event that build teams to create innovative solutions using Open Government Data. Teams are formed with project managers, entrepreneurs, developers, designers, researchers, open data enthusiasts etc. Even story tellers are in there Smile Have a look at the report from last year’s event here.

 

What is a Hack?

A hack is to take something and make it better.  Our teams will look at the available data exposed by open government data sources and make a cool, useful and engaging application.

 

How Does it Work?

On the Friday night launch the competition categories are announced, the teams are formed and the event runs for the next 46 hours. The teams will then look at the datasets and create things with them. The best applications are in for prizes in International, National and Local categories. At the end of the GovHack a proof-of-concept and a video are created explaining the solution. Teams work through the weekend and by Sunday 5pm a 3 minute video of your concept and any code/source materials must be made public.

 

When is GovHack Happening?

In 2016, GovHack will happen from 29th to 31st July. Yep, the Prime-Minister supports it Smile

 

Who is Behind the GovHack?

This is a non-profit event proudly run by volunteers who form the GovHack Coordination Team. Our ongoing thanks to everyone who gets involved and makes GovHack awesome! That is, the hackers, data providers, sponsors, mentors and a special thanks to the volunteers who run Local GovHack events.

 

 

Who is Sponsoring GovHack Australia 2016?

Several big IT companies and Fare behind this effort such as:

image

image

by

How to Setup a Private Network Connection to your Office 365 ?

Here’s a question I get quite often during my compliance and data protection presentations. I thought about writing this post so I can easily redirect folks here. I am all about reusing explanations Smile

Is it Possible to Have a Secure Tunnel Connection to SharePoint Online? My Own Private Connection?

Yes, it is. Using Express Route. Not only to SharePoint Online, but to the whole Office 365. I would say, 80% of the time when folks are looking for this answer is because they are talking about a hybrid environment where they want to integrate their SharePoint on-premise with SharePoint Online and normally involved handling sensitive data.

image

What is Express Route and What it Does?

ExpressRoute initially was an Azure-only solution that got expanded to Office 365. It’s goal is to establish a private and managed connection to Office 365. What it does is to provide a dedicated network connectivity through a private connection from their (users) network to Microsoft Azure or Office 365.

How Does it Look Like from a Helicopter View?

Here’s a simple diagram of how ExpressRoute can be used with Office 365.

image

Will Having my Own Private Network to Office 365 Impact Performance?

Yes and No. Network performance will be as predictable as your own on-premises environments, it is up to you then to take care of your own network performance, of course. In some ways this is like having an Office 365 environment in your own datacenter.  One added benefit you will certainly have is that using ExpressRoute most Office 365 network traffic can be configured to avoid the public Internet, providing additional data privacy. And here is your answer for privacy and sensitivity concerns.

As usual, your data is still your data.

Who Are the Best Candidates to Use Express Route with Office 365?

Organizations that require a higher class, premium managed connectivity to the cloud. Governments also can use it. Actually Microsoft did this as a development of the famous Safe Harbour case issue.

What if my Company has Multiple Locations Across the Globe?

No worries. ExpressRoute offers something called “circuits” that applies the traffic to different geographic locations with redundancy and geo-resiliency.

image

Explain a Bit More What these Circuits are…

OK, so these ExpressRoute Circuit are geographically distributed connections that delivers by default 2 active physical connections for high availability. The networking elements are still backed by Microsoft’s connection uptime SLA (99.9 %). On a cool note, as of today, Microsoft is the only public cloud provider to offer this level of guaranteed availability for the connection. An additional benefit is that if you have Azure applications, you can this same single ExpressRoute connection.

image

 

How Do I Buy ExpressRoute?

There is no additional licensing costs to use ExpressRoute, however not everyone can guarantee these circuits for you, so you will have to work with the Microsoft Cloud Approved Providers. These guys can guarantee the premium network connectivity required by Microsoft and they have their own price list. Here’s a list of the MS Cloud Approved Providers for your query.

I Want It!! What Should I Do?

Network capacity plan. I mean, you are deciding to setup your own private connection to the public cloud, you’ve got to do your homework Smile Here’s a good link with some guidelines for your network infrastructure plan then contact one of the Approved Providers.

Good Luck. If you’ve done an ExpressRoute for Office 365 project, share your thoughts with the wider community. Love to hear from you.

See ya!

by

I Am Presenting at the Azure Smorgasbord in December 2015

How does your day look like on December 9th 2015?

Come join me a Microsoft to discuss and share ideas about IoT, Azure and Office 365 in Australia.

iot edge

 

Session Name: “IoT - The Invasion of Australia”

Abstract: “Five million new IoT devices will come online every day in 2016. Do you want a piece of this 50 billion dollar cake? Join Edge Pereira to discuss a use case of IoT in Australia and why we are in a prime position to lead the world in this area.”

Click here to register

 

Where Can I Find the Presentation Slides?

You can find the slides for this presentation here.

by

Hour of Code 2015. I am Volunteer. Again.

Once again this year I am volunteering time for the Hour of Code. And proud of it. Listen what Bill Gates, Mark Zuckerberg, Jack Dorsey and others have to say about this event.

 

 

What is the Hour of Code?

Launched in 2013, Code.org is a non-profit dedicated to expanding access to computer science, and increasing participation by women and underrepresented students. The vision is that every student in every school should have the opportunity to learn computer science. Code.org believes that computer science should be part of core curriculum, alongside other courses such as biology, chemistry or algebra.

 

Untitled

When It Happens?

Volunteers from all over the world help local teachers and their classes during the Computer Science Education Week that happens every year in December. This year it will be from December 7th to 13th.

 

How Can You Help?

We have this year 13.000 requests from teachers from all over the world, but only 4.000 volunteers. We need volunteers to help with the activities and help the teachers. Here are a few things you can do also to get involved:

  1. Recruit co-workers to volunteer:  Blog, share, tell your friends and co-workers about the Hour of Code and ask them to sign up as a volunteer.
  2. If you know someone who’s a volunteer, connect them with people who wants to setup Hour of Code parties.

 

I Want to be a Volunteer. What Do I Need to Do?

To get a better idea about what your volunteer experience will be like, have a look at this guide. There's also some extra tips about how you can get your employer and community involved with the Hour of Code.

 

If you know anyone needing help with it, feel free to connect with me. Remember: I am a volunteer! Smile

by

Infrastructure Saturday 2015 Social Media Stats #infrasat

We’ve just done another successful Infrastructure Saturday event. It takes a lot of time and passion to setup personal time aside and to organize such an event. This is an annual event totally built and sponsored by the community, so the people you find there (attending, organizing or presenting) are 100% committed to the cause. Big shout for the guys organizing: Alan Burchill and Shane Hoey

Below are some of the social media stats collected during the last week up to the event day. This years top contributors were: JustBroady, superedge, david_obrien, pzerger, cloudtidings, bneusergroup, alanburchill, twalex2, blkchninstitute, reecestewart4

If you’ve been to the sessions, thank you very much. I hoped you enjoyed and see you next year.

imageimage

image

image

 

image

image

image

image

image

image

image

 

Top Links about the #infrasat Infrastructure Saturday 2015 Event

  1. https://www.flickr.com/photos/alborath/albums/72157660731316669
  2. https://twitter.com/DigitalGlobe/status/667834517428682752
  3. https://code.visualstudio.com
  4. http://www.infrastructuresaturday.com/
  5. http://www.superedge.net/2015/11/ethereum-blockchain-service-bitcoin.html
  6. https://lnkd.in/b_GeEXZ
  7. https://lnkd.in/bk9tVcN
  8. https://doc.co/75WgEz
  9. http://www.linkedin.com/pulse/want-increase-privacy-protection-your-cloud-data-worries-edge-pereira
  10. http://www.infrastructuresaturday.com
  11. http://infrastructuresaturday.org
  12. https://lnkd.in/buajN7R
  13. https://lnkd.in/bkYJbY4
  14. https://lnkd.in/bBgh534
  15. http://www.superedge.net/2015/11/infrastructure-saturday-2015-australia.html
  16. https://lnkd.in/bhp3pyZ