The Security Insights Show

Rod Trent

Hosted by Edward Walton, Frank Grimberg, Rod Trent, and Brodie Cassell, THE Security Insights Show provides information, news, tips on the Microsoft Security Solutions including Microsoft SIEM and XDR and Security Copilot. www.microsoftsecurityinsights.com

  1. 24 JUN

    The Security Insights Show Episode 266 - MVP Community.

    Join us this episode as we invite some of our awesome Microsoft Security MVPs to discuss their experiences with the MVP program. Show Notes/Links * Defender Experts upcoming webinar: Defender Experts: S.T.A.R. Forum - Strategies for Threat Awareness and Response, Episode 3. ClickFix: The Threat You Can’t Afford to Ignore. Are You Ready to Respond? Join Microsoft Defender Experts for an unfiltered breakdown of the ClickFix attack, and learn how to defend against it before it disrupts your operations. * Register Here: https://msit.events.teams.microsoft.com/event/4cee88e5-0a8a-4f02-9e4a-453bdda2e38d@72f988bf-86f1-41af-91ab-2d7cd011db47/registration What to Expect: * No-Nonsense Tactics: Dive into actionable strategies for detecting, investigating, and mitigating ClickFix straight from the frontlines. * KQL Demystified: Get hands-on with KQL to enhance your threat detection, automate responses, and build custom playbooks. * Real Expertise: Hear from the professionals actively hunting and blocking threats like ClickFix in real-time. * Advanced Defense: Sharpen your response to ransomware, phishing, and social engineering with field-tested techniques. If you're serious about your defense posture, this isn’t just another webinar. This is essential knowledge to keep you ahead of the curve and out of harm’s way. Check out content from our previous episode(s): https://aka.ms/DefenderExpertsWebinarSeries * Secure Score over time with Power BI - Secure Score Over Time Power BI Dashboard | Microsoft Community Hub * Analyze Conditional Access Policy impact - The policy impact view for individual Microsoft Entra Conditional Access policies enables admins to evaluate the effects of enabled and report-only Conditional Access policies in their organization, without using Log Analytics. This feature surfaces a graph for each policy in the Microsoft Entra admin center, showing the policy’s impact on the tenant’s past sign-ins. * Microsoft Entra External ID: Sign in with Apple - Configure Apple as an external identity provider (IdP) to add Apple as a social provider for your user flows. Users can sign up and sign in to associated applications using their Apple ID accounts through the Sign in with Apple option. * Hands-on learning resource for Defender for AI Services hosted here: https://github.com/Azure/Microsoft-Defender-for-Cloud/blob/main/Labs/Modules/Module%2024%20-%20AI%20Workloads.md * Microsoft is now hosting xAI’s Grok 3 models I reported in my Notepad newsletter earlier this month that Microsoft was getting ready to host Elon Musk’s Grok AI models, and now it’s official. At Microsoft’s Build developer conference today, the company confirmed it’s expanding its Azure AI Foundry models list to include Grok 3 and Grok 3… * Microsoft introduces GitHub AI agent that can code for you Microsoft’s GitHub unit on Monday introduced a Copilot artificial intelligence agent that can take on specific programming work and inform people once it has finished. From there, developers can check the agent’s work from GitHub, a widely used repository for code. Watch the live replay This is a public episode. If you would like to discuss this with other subscribers or get access to bonus episodes, visit www.microsoftsecurityinsights.com

    1h 7m
  2. 10 JUN

    The Microsoft Security Insights Show Episode 264 - Adam Brewer

    Join us as we welcome Adam Brewer. Adam is a seasoned professional with a distinguished career at Microsoft and in enterprise IT. He currently serves as an Security Sales Specialist at Microsoft, focusing on the West and Midwest region. In this role, Adam is responsible for driving security initiatives and ensuring the successful implementation of Microsoft's security solutions with enterprise clients. His work involves close collaboration with various teams across Microsoft and his clients to address their security needs and challenges. Show Notes/Links * Defender Experts upcoming webinar: Defender Experts: S.T.A.R. Forum - Strategies for Threat Awareness and Response, Episode 3. ClickFix: The Threat You Can’t Afford to Ignore. Are You Ready to Respond? Join Microsoft Defender Experts for an unfiltered breakdown of the ClickFix attack, and learn how to defend against it before it disrupts your operations. * Register Here: https://msit.events.teams.microsoft.com/event/4cee88e5-0a8a-4f02-9e4a-453bdda2e38d@72f988bf-86f1-41af-91ab-2d7cd011db47/registration What to Expect: * No-Nonsense Tactics: Dive into actionable strategies for detecting, investigating, and mitigating ClickFix straight from the frontlines. * KQL Demystified: Get hands-on with KQL to enhance your threat detection, automate responses, and build custom playbooks. * Real Expertise: Hear from the professionals actively hunting and blocking threats like ClickFix in real-time. * Advanced Defense: Sharpen your response to ransomware, phishing, and social engineering with field-tested techniques. If you're serious about your defense posture, this isn’t just another webinar. This is essential knowledge to keep you ahead of the curve and out of harm’s way. Check out content from our previous episode(s): https://aka.ms/DefenderExpertsWebinarSeries * Secure Score over time with Power BI - Secure Score Over Time Power BI Dashboard | Microsoft Community Hub * Analyze Conditional Access Policy impact - The policy impact view for individual Microsoft Entra Conditional Access policies enables admins to evaluate the effects of enabled and report-only Conditional Access policies in their organization, without using Log Analytics. This feature surfaces a graph for each policy in the Microsoft Entra admin center, showing the policy’s impact on the tenant’s past sign-ins. * Microsoft Entra External ID: Sign in with Apple - Configure Apple as an external identity provider (IdP) to add Apple as a social provider for your user flows. Users can sign up and sign in to associated applications using their Apple ID accounts through the Sign in with Apple option. * Hands-on learning resource for Defender for AI Services hosted here: https://github.com/Azure/Microsoft-Defender-for-Cloud/blob/main/Labs/Modules/Module%2024%20-%20AI%20Workloads.md * Microsoft is now hosting xAI’s Grok 3 models I reported in my Notepad newsletter earlier this month that Microsoft was getting ready to host Elon Musk’s Grok AI models, and now it’s official. At Microsoft’s Build developer conference today, the company confirmed it’s expanding its Azure AI Foundry models list to include Grok 3 and Grok 3… * Microsoft introduces GitHub AI agent that can code for you Microsoft’s GitHub unit on Monday introduced a Copilot artificial intelligence agent that can take on specific programming work and inform people once it has finished. From there, developers can check the agent’s work from GitHub, a widely used repository for code. Watch the live replay This is a public episode. If you would like to discuss this with other subscribers or get access to bonus episodes, visit www.microsoftsecurityinsights.com

    1h 14m
  3. 2 JUN

    The Microsoft Security Insights Show Episode 263 - BlueVoyant

    Join us as we welcome Micah Heaton from BlueVoyant and Michael Brown from Microsoft as we discuss a whole stack of things, including DEX, Security Copilot agents, and SIEM and XDR. Show Notes/Links * The MISA Awards - Full show: https://securitypartners.transform.microsoft.com/misa-excellence-awards-2025 * BlueVoyant XDR Threat Gap Analysis: https://appsource.microsoft.com/en-cy/product/power-bi/bluevoyant1583844909747.securitydiagnosticapp?exp=kyyw&tab=Overview * Threat Actor Naming: https://www.microsoft.com/en-us/security/blog/2025/06/02/announcing-a-new-strategic-collaboration-to-bring-clarity-to-threat-actor-naming/ * KQL Query for Actor Names: https://learn.microsoft.com/en-us/unified-secops-platform/microsoft-threat-actor-naming#resources * Github of Jaime: https://github.com/jguimera * Microsoft BlueHat: https://www.microsoft.com/bluehat/ * Secure Score over time with Power BI - Secure Score Over Time Power BI Dashboard | Microsoft Community Hub * Analyze Conditional Access Policy impact - The policy impact view for individual Microsoft Entra Conditional Access policies enables admins to evaluate the effects of enabled and report-only Conditional Access policies in their organization, without using Log Analytics. This feature surfaces a graph for each policy in the Microsoft Entra admin center, showing the policy’s impact on the tenant’s past sign-ins. * Microsoft Entra External ID: Sign in with Apple - Configure Apple as an external identity provider (IdP) to add Apple as a social provider for your user flows. Users can sign up and sign in to associated applications using their Apple ID accounts through the Sign in with Apple option. Watch the live replay This is a public episode. If you would like to discuss this with other subscribers or get access to bonus episodes, visit www.microsoftsecurityinsights.com

    1h 21m
  4. 30 MAY

    THE Security Insights Show Episode 225a - Performanta

    Stop by the show as we welcome back Performanta. During the last Performanta appearance we were wowed by their Security Copilot automation. Join us to hear how the Microsoft partner is taking Security Copilot Agents to the next level. * Performanta: https://www.performanta.com/ * Microsoft Security Copilot Agent videos: https://adoption.microsoft.com/security-copilot/video-hub/ * MDEAutomator: https://github.com/msdirtbag/MDEAutomator General Securing generative AI models on Azure AI Foundry Microsoft's Zero Trust approach Threat Intelligence & ESAM Azure Security & Defender for Cloud News Sentinel News Microsoft Sentinel Project Deployment Tracker Ingesting Akamai Audit Logs into Microsoft Sentinel using Azure Function Apps Defender for IoT Sensor Disconnection Notifications with Microsoft Defender for IoT and Microsoft Sentinel What's new in Microsoft Defender for IoT? Microsoft 365 Security (All Up News) Security Update Release Summary March 2025 Microsoft Entra Help Desk & Account Recovery - Face Check with Microsoft Entra Verified ID Remote Onboarding - Face Check with Microsoft Entra Verified ID Secure Access to Resources - Face Check with Microsoft Entra Verified ID Device Management & Protection (Intune) Fortify your security posture with Microsoft Intune and Windows Stay ahead of evolving threats with the latest AI in Intune Expand endpoint visibility across device platforms Microsoft Intune provides key advantages for macOS management What's New in Azure Firewall - March 2025 Configure Entra Private Access and Quick Access in Microsoft Entra Global Secure Access What's new in Microsoft Intune M365 Defender (Defender for Office, Defender for Endpoint, Defender for Identity, Defender for Cloud Apps) Resolving high CPU utilization in Microsoft Defender Antivirus Mastering endpoint security settings issues with Defender for Endpoint Client Analyzer Mastering onboarding issues with Defender for Endpoint Client Analyzer Microsoft Defender for Endpoint Client Analyzer overview What's new in Microsoft Defender XDR What's new in Microsoft Defender for Endpoint What's new in Microsoft Defender for Office 365 What's new in Microsoft Defender for Identity What's new in Microsoft Defender for Cloud Apps Defender Experts for XDR Copilot for Security Announcing Alert Triage Agents in Microsoft Purview, powered by Security Copilot What's new in Microsoft Security Copilot? Incident Response Purview - Compliance & Governance Mitigating insider risks in the age of AI with Microsoft Purview Insider Risk Management Learning Microsoft Defender for Cloud Apps - Ninja Training Watch the live replay This is a public episode. If you would like to discuss this with other subscribers or get access to bonus episodes, visit www.microsoftsecurityinsights.com

    1h 4m

About

Hosted by Edward Walton, Frank Grimberg, Rod Trent, and Brodie Cassell, THE Security Insights Show provides information, news, tips on the Microsoft Security Solutions including Microsoft SIEM and XDR and Security Copilot. www.microsoftsecurityinsights.com