zero trust

  1. Microsoft SFI Patterns and Practices: Practical Zero Trust Blueprints

    Microsoft’s latest Secure Future Initiative (SFI) update moves beyond high-level commitments and delivers a practical, practitioner-focused set of patterns and practices aimed at turning Zero Trust theory into repeatable operational reality for networks, tenants, engineering systems, and...
  2. Windows 11 Refresh: Turn Windows 10 Migration into a Strategic Advantage

    The migration from Windows 10 to Windows 11 is no longer a distant IT project — it is a definable strategic opportunity that, when handled correctly, can deliver measurable security, productivity, and competitive gains for businesses across sectors. The recent CAJ News Africa briefing framing...
  3. Microsoft Global Secure Access: Replacing VPNs with Identity First SSE

    Microsoft’s move away from a traditional VPN toward an identity-first Security Service Edge—branded internally as Global Secure Access (GSA) and externally as Microsoft Entra Internet Access and Microsoft Entra Private Access—represents a major operational and architectural shift for large...
  4. Identity First Security for EHRs: Frictionless, Phishing-Resistant Access

    Electronic health records (EHRs are now the operational heart of modern healthcare, but expanding clinician access without undermining patient safety demands a careful, risk-based redesign of identity, authentication, and access controls across people, devices, and applications. Background EHR...
  5. Turn Copilot Pilots into Production with Data Governance

    When Varonis field CTO Brian Vecci quipped that “every copilot pilot gets stuck in pilot” at a Fortune Brainstorm Tech panel, the laughter in the room masked a sharper truth: organizations desperate to extract business value from generative AI are repeatedly hitting the same barrier — data...
  6. Workday & Microsoft Unveil Identity-First AI Agent Governance (ASOR + Entra)

    Workday and Microsoft have announced a practical, identity-first integration that lets organizations register, verify, and govern AI agents alongside human employees by linking Microsoft’s agent runtime and identity tooling with Workday’s new Agent System of Record (ASOR), enabling agents built...
  7. Windows 10 End of Support 2025: 5 Realistic Paths to Stay Secure

    Windows 10 will stop receiving free security fixes on October 14, 2025 — and if your PC can’t take the free Windows 11 upgrade, you have five realistic paths forward: enroll in Extended Security Updates (ESU), buy or rent a new Windows 11 PC (including cloud PCs), perform an unsupported upgrade...
  8. Windows 365 Cloud Apps Public Preview: App-Only Streaming for Frontline Workers

    Microsoft’s Windows 365 is taking a pragmatic step toward wider frontline and shift-worker adoption by launching Windows 365 Cloud Apps in public preview — a feature that streams individual Windows applications from a shared Cloud PC so organizations can deliver Outlook, Word, OneDrive and...
  9. Workday and Microsoft: Unified AI Agents with Entra ID and ASOR

    Workday and Microsoft’s new integration aims to let organisations manage human employees and AI agents from a single, auditable plane — registering Copilot Studio and Azure AI Foundry agents into Workday’s Agent System of Record (ASOR) and giving each agent a verifiable Microsoft Entra Agent ID...
  10. Windows 365 Cloud Apps: App-only streaming for frontline workers

    Microsoft’s decision to let organizations stream single Windows applications from the cloud — instead of entire Cloud PC sessions — marks a pragmatic pivot in how enterprises will adopt Windows 365 for day-to-day workforces and frontline roles. The new Windows 365 Cloud Apps feature, now in...
  11. Workday and Microsoft Launch Agent System of Record for AI Agents

    Workday and Microsoft have quietly stepped into the next phase of enterprise automation: they’re building the plumbing to let agentic AI workers — digital agents created in Microsoft’s developer ecosystem — obtain verified identities, join a corporate directory, and be managed alongside human...
  12. Workday–Microsoft AI Agents: Identity-Driven Enterprise Governance

    Workday’s announcement at Workday Rising of a joint technical alignment with Microsoft marks a decisive step in making AI agents first-class, governable entities inside the enterprise — not just ephemeral bots stitched together by line-of-business teams. The new integration links Microsoft’s...
  13. Workday and Microsoft Unite to Govern AI Agents in the Enterprise

    Workday and Microsoft quietly stitched together a practical bridge between identity, runtime, and business context for AI agents—an integration that promises to make digital workers first-class citizens in enterprise HR, finance, and security systems while raising new questions about governance...
  14. Critical Apache Vulnerabilities in Siemens OT Tools: SINEC NMS, SINEMA, RUGGEDCOM NMS

    Siemens has republished a critical advisory that pulls a spotlight back onto a cluster of high-severity Apache HTTP Server vulnerabilities found embedded inside several Siemens industrial networking products — most notably RUGGEDCOM NMS, SINEC NMS, and SINEMA family components — and is urging...
  15. Windows Office Hours Sept 18, 2025: Live Q&A on Windows 11, Zero Trust, and Updates

    Microsoft’s recurring Windows Office Hours returns on Thursday, September 18, 2025, offering IT teams a focused, chat-based hour to get engineer-led answers on Windows 11 adoption, Zero Trust, update orchestration, and cloud/hybrid device strategies. The one-hour session is scheduled for...
  16. RRAS CVE-2025-54095: Network-based memory disclosure in Windows RRAS

    Microsoft’s Security Response Center lists CVE-2025-54095 as an out-of-bounds read in the Windows Routing and Remote Access Service (RRAS) that can disclose memory contents to a remote attacker over the network. Background / Overview Routing and Remote Access Service (RRAS) is a long‑standing...
  17. CVE-2025-54096: Patch RRAS Out-of-Bounds Read in Windows VPN Gateways

    Microsoft has published an advisory for CVE-2025-54096, a vulnerability in the Windows Routing and Remote Access Service (RRAS) that allows an out-of-bounds read and can be abused by a remote attacker to disclose sensitive information over a network — a high-priority fix for any server running...
  18. AI Adoption Without Governance: Visibility Gaps Elevate Security and Compliance Risk

    As organizations race to exploit generative AI and broaden their third‑party ecosystems, a startling pattern is emerging: mass adoption without adequate visibility is creating a cascade of security, compliance, and financial risks that many firms are poorly equipped to handle. New survey data...
  19. Secure Multi-Cloud Connector Enables Power Platform on Live AWS Data for Government

    Hitachi Solutions Europe’s Proof of Concept (PoC) that let Microsoft applications — including Power Platform, Dynamics 365 and Microsoft Copilot — operate on live, sensitive case data stored in Amazon Web Services (AWS) without copying or moving that data represents a practical leap for secure...
  20. Copilot Studio Enables Inline Real-Time Enforcement via External Monitors

    Microsoft’s Copilot Studio has moved from built‑in guardrails to active, near‑real‑time intervention: organizations can now route an agent’s planned actions to external monitors that approve or block those actions while the agent is executing, enabling step‑level enforcement that ties existing...