Moving from Reactive to Proactive Security. Sami Laiho Adminize / Intility Senior Technical Fellow, MVP April 28 th New-York City

Size: px
Start display at page:

Download "Moving from Reactive to Proactive Security. Sami Laiho Adminize / Intility Senior Technical Fellow, MVP April 28 th New-York City"

Transcription

1 Moving from Reactive to Proactive Security Sami Laiho Adminize / Intility Senior Technical Fellow, MVP April 28 th New-York City

2 Thanks to our Organizers! Tome Tanasovski PowerShell MVP Blog: Ken Reid Website: Eric Fellen Website: Ben Serebin Exchange Junkie Blog: David Sebban Windows IT Pro MVP Blog: 4/28/2017 New-York City Page 2

3 User Group Communities NYC PowerShell User Group Meetings: Second Monday of the month, 6:00PM, Microsoft NYC Office Web: New York Exchange User Group (NYExUG) Meetings: Second Tuesday of the month, 5:45PM to 9PM, Microsoft NYC Office Web: Devices and Datacenter User Group New York (DDUGNY) Meetings: First Thursday of the month, 6:00PM, Microsoft NYC Office Web: 4/28/2017 New-York City Page 3

4 Event Sponsors 4/28/2017 New-York City Page 4

5 Event User Groups 4/28/2017 New-York City Page 5

6 Introduction Sami Laiho Senior Technical Fellow IT Admin since 1996 MVP in Windows OS since 2011 Specializes in and trains: Troubleshooting Security Trophies: TechDays Sweden 2016 Best Speaker NIC 2016, Best Speaker Ignite 2015 Best male presenter ;) TechEd Europe and North America Best session, Best speaker TechEd Australia Best session, Best speaker 4/28/2017 New-York City Page 6

7 I got Certs

8 2,6 pounds of them

9 4/28/2017 New-York City Page 9

10 4/28/2017 New-York City Page 10

11 4/28/2017 New-York City Page 11

12 4/28/2017 New-York City Page 12

13 4/28/2017 New-York City Page 13

14 SWAG SWAG! 4/28/2017 New-York City Page 14

15 Security in 2017 It is estimated that more than 300,000 new malware variants are discovered daily Microsoft As reactive security measures aims to identify the 200,000 new samples gathered every single day in 2014 Pandalabs All major Anti-Malware companies have said that their products can t protect your devices in Proactive security is the only way to go! One of the biggest missing parts of security in enterprises is the lack of SIMPLE enough instructions 4/28/2017 New-York City Page 15

16 Human factor and physical security 4/28/2017 New-York City Page 16

17 Physical Security? 4/28/2017 New-York City Page 17

18 If you can t do it all here s the order #0 Biometrics #1 Hard Disk Encryption #2 Prevent Pass-the-Hash #3 Least Privilege #4 Whitelisting 4/28/2017 New-York City Page 18

19 #0 Biometrics April 28 th New-York City

20 4/28/2017 New-York City Page 20

21 Your Fingers can only be Pwned 10 times 4/28/2017 New-York City Page 21

22 #1 Hard Disk Encryption April 28 th New-York City

23 Why we need encryption? Data wise because over devices get lost or stolen on the biggest airports in US and Europe yearly Security wise because all Windows versions can be cracked with a single command Start teaching people that BitLocker is part of the INTEGRITY of Windows not just data protection! Secure decommissioning The format utility (since Windows Vista) deletes the volume metadata and overwrites those sectors to securely delete any BitLocker keys and by doing so makes the volume instantly unreadable 4/28/2017 New-York City Page 23

24 BitLocker deployment Project starts by choosing correct hardware UEFI, x64, SecureBoot, TPM, no DMA-enabled busses (or IO-MMU to protect them) INTEL IOMMU is VT-d AMD IOMMU is AMD-Vi Secure recovery keys (AD, Cloud, MBAM) Keep it simple, use only TPM if allowed Be secure enough but realistic 4/28/2017 New-York City Page 24

25 DEMO Computer without BitLocker 4/28/2017 New-York City Page 25

26 #2 Preventing Pass-The- Hash April 28 th New-York City

27 Simple at the end! Local Users Windows 7 Make sure no two computers have local administrators with the same password Microsoft LAPS Adminizer Lazy: Install and Deny access to Local Administrators from the network Windows 8.1/10 Lazy: Deny access to Local Administrators from the network Recommended: Same as Windows 7 4/28/2017 New-York City Page 27

28 Simple at the end! Domain Users Windows 7 and 8.1 Make sure Domain Admins can t log on to workstations Make sure admins can only access computers they are supposed to Use admin workstations (see my blog on RSAT) blog.win-fu.com Windows 10 Lazy: Deploy Credential Guard Recommended: Credential Guard + the same as Windows 7 4/28/2017 New-York City Page 28

29 Containing Split your environment into three layers Never allow higher layer admins to logon to lower layers Domain Admins Power (DCs) Data (Servers and Apps) Server Admins Workstation Admins Access (Endpoints) 4/28/2017 New-York City Page 29

30 DEMO PtH Prevention 4/28/2017 New-York City Page 30

31 #3 Least Privilege April 28 th New-York City

32 NT 3.1 Security Guide States that local admins have full access to computer. 4/28/2017 New-York City Page 32

33 2016 Microsoft Vulnerabilities Study Of the 189 vulnerabilities in 2016 with a Critical rating, 94% were concluded to be mitigated by removing administrator rights 66% of all Microsoft vulnerabilities reported in 2016 could be mitigated by removing admin rights 100% of vulnerabilities impacting Microsoft s latest browser Edge could be mitigated 100% of vulnerabilities in Internet Explorer could be mitigated by removing admin rights 99% of vulnerabilities affecting Microsoft Office could be mitigated by removing admin rights 93% Critical vulnerabilities affecting Windows 10 could be mitigated by removing admin rights 4/28/2017 New-York City Page 33

34 Security policy states the given privileges 4/28/2017 New-York City Page 34

35 DEMO Privileges Beat Permissions 4/28/2017 New-York City Page 35

36 GPO s don t help Security policy can take away a privilege from an admin An admin can give it back It can be enforced with a GPO Admins can block GPOs! Fighting against windmills You lose! 4/28/2017 New-York City Page 36

37 DEMO Bypassing policies 4/28/2017 New-York City Page 37

38 And NO, UAC is not enough! 4/28/2017 New-York City Page 38

39 How to get rid of Admin rights Secure 4/28/2017 New-York City Page 39

40 Real solution If you ask me the real solution is to change from giving permissions to users or computers to giving permissions to processes Many solutions out there 4/28/2017 New-York City Page 40

41 DEMO Elevating Processes 4/28/2017 New-York City Page 41

42 #4 Whitelisting April 28 th New-York City

43 AppLocker Blacklisting and Whitelisting All software needs to be preapproved in some way Location, hash or signature based Is really SRPv2 Is based on a native function of the Windows OS since Windows 7 Requires Enterprise version of Windows Pro? Use Software Restriction Policies they still work well! 4/28/2017 New-York City Page 43

44 How to implement it? Keep to containers not items Folders vs Files, Signatures vs Hashes Remember to audit your installation with AccessChk! What about Device Guard? 4/28/2017 New-York City Page 44

45 Signing 95% of Malware is not signed just something to think about 4/28/2017 New-York City Page 45

46 DEMO Deploying AppLocker 4/28/2017 New-York City Page 46

47 An ounce of prevention is worth a pound of cure Benjamin Franklin 4/28/2017 New-York City Page 47

48 Other information All slide decks will be posted on Grand Prize Raffle at 5:15pm Join us for Cash Bar & Free Guys 5:45pm 4/28/2017 New-York City Page 48

What s really new in Windows 10?

What s really new in Windows 10? Sami Laiho Senior Technical Fellow, MVP Adminize.com / Win-fu.com sami@adminize.com BLOG.WIN-FU.COM @samilaiho What s really new in Windows 10? Configuration Manager Forgive my English When most get Administrator

More information

How Windows Security Really Works?

How Windows Security Really Works? Sami Laiho Senior Technical Fellow, MVP Adminize.com / Win-fu.com sami@adminize.com BLOG.WIN-FU.COM @samilaiho How Windows Security Really Works? Configuration Manager Sami Laiho Senior Technical Fellow

More information

Adminizer. Sami Laiho Senior Technical Fellow adminize.com

Adminizer. Sami Laiho Senior Technical Fellow adminize.com Adminizer Sami Laiho Senior Technical Fellow adminize.com Why should I keep on reading? If you don t want to have to remember or change your local admin passwords If you don t want to give users permanent

More information

Hardening the Modern Windows Client Let s NOT break it this time

Hardening the Modern Windows Client Let s NOT break it this time Hardening the Modern Windows Client Let s NOT break it this time Raymond P.L. Comvalius Raymond Comvalius IT Infra Architect/Trainer MVP Windows IT Pro Zelfstandig sinds 1998 Agenda History of Hardening

More information

MD-100: Modern Desktop Administrator Part 1

MD-100: Modern Desktop Administrator Part 1 Days: 5 Description: This five-day course is for IT professionals who deploy, configure, secure, manage, and monitor devices and client applications in an enterprise environment. Students will develop

More information

WINDOWS 10 ENTERPRISE New Security Features

WINDOWS 10 ENTERPRISE New Security Features WINDOWS 10 ENTERPRISE New Security Features J. Abernethy mindshift Technologies Josh Quinn mindshift Technologies #ILTALSS #LSS26 TODAY S AGENDA Windows 10 Security Fundamentals Managing Windows 10 Security

More information

70-697: Configuring Windows Devices. Course Overview

70-697: Configuring Windows Devices. Course Overview 70-697: Configuring Windows Devices Course Overview This course will teach students about what s new in Windows 10, Windows 10 deployment, deploying virtual Windows 10 desktops, configuring device settings,

More information

Windows 10 Security & Audit

Windows 10 Security & Audit Windows 10 Security & Audit John Tannahill, CA, CISM, CGEIT, CRISC, CSX-P jtannahi@rogers.com Windows 10 Editions Home Pro Enterprise Education Mobile IoT Editions 1 Windows 10 Builds Windows 10 (initial

More information

Upgrading Your Skills to MCSA Windows 8

Upgrading Your Skills to MCSA Windows 8 Course 20689D: Upgrading Your Skills to MCSA Windows 8 Course Details Course Outline Module 1: Windows 8.1 in an Enterprise Network Environment This module explains how the features and related solutions

More information

Deploy and Configure Microsoft LAPS. Step by step guide and useful tips

Deploy and Configure Microsoft LAPS. Step by step guide and useful tips Deploy and Configure Microsoft LAPS Step by step guide and useful tips 2 Table of Contents Challenges today... 3 What is LAPS... 4 Emphasis and Tips... 5 How LAPS Work... 6 Components... 6 Prepare, Deploy

More information

GSE/Belux Enterprise Systems Security Meeting

GSE/Belux Enterprise Systems Security Meeting MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION. 1 In the news Microsoft Exposes Scope of Botnet Threat By Tony Bradley, October 15, 2010 Microsoft's

More information

Manually Run Ad Logon Script As Administrator Group Policy

Manually Run Ad Logon Script As Administrator Group Policy Manually Run Ad Logon Script As Administrator Group Policy Startup Scripts for _Group Policy object_ : Lists all the scripts that currently are assigned By default, members of the Domain Administrators

More information

Mobility Windows 10 Bootcamp

Mobility Windows 10 Bootcamp Mobility Windows 10 Bootcamp Length: 8 days Format: Bootcamp Time: Day About This Course This boot camp is designed to provide students with the knowledge and skills required to install and configure Windows

More information

COURSE OUTLINE: Supporting and Troubleshooting Windows 10

COURSE OUTLINE: Supporting and Troubleshooting Windows 10 Course Name 10982-Supporting and Troubleshooting Course Duration 5 Days Course Structure Instructor-Led Course Overview This course is designed to provide students with the knowledge and skills required

More information

Implementing and Managing Windows 10

Implementing and Managing Windows 10 Course 20697 1C: Implementing and Managing Windows 10 Course Outline Module 1: Overview of Windows 10 This module describes the Windows 10 operating system. It describes the new features in Windows 10,

More information

Windows 10 and the Enterprise. Craig A. Brown Prepared for: GMIS

Windows 10 and the Enterprise. Craig A. Brown Prepared for: GMIS Windows 10 and the Enterprise Craig A. Brown Prepared for: GMIS 11-2-2015 Introduction Craig A. Brown Microsoft Practice Leader Global Knowledge MCT, Since 1996 MCSA / MCSE / NT / 2000 / 2003 MCDST MCITP:

More information

COURSE OUTLINE MOC 20697: INSTALLING AND CONFIGURING WINDOWS 10

COURSE OUTLINE MOC 20697: INSTALLING AND CONFIGURING WINDOWS 10 COURSE OUTLINE MOC 20697: INSTALLING AND CONFIGURING WINDOWS 10 MODULE 1: OVERVIEW OF WINDOWS 10 This module introduces the Windows 10 operating system. It describes the new features in Windows 10, and

More information

Windows 10 edition. Find out which. is right for you. Core features. Familar, and better than ever Home Pro Enterprise Education Mobile.

Windows 10 edition. Find out which. is right for you. Core features. Familar, and better than ever Home Pro Enterprise Education Mobile. Core features Familar, and better than ever Home Pro Education Customizable Start Menu Windows Defender & Windows firewall N/A 1 N/A Fast start up with Hiberboot and InstantGo 2 N/A N/A TPM support 3 Battery

More information

Exam /Course C or B Configuring Windows Devices

Exam /Course C or B Configuring Windows Devices Exam 70-697/Course 20697-1C or 20697-2B Configuring Windows Devices Course 20697-1C Implementing and Managing Windows 10 About this course This course provides students with the knowledge and skills required

More information

HAROLD BAELE MICROSOFT CLOUD TECHNICAL CONSULTANT MICROSOFT CERTIFIED TRAINER. New protection capabilities in Windows Server 2016

HAROLD BAELE MICROSOFT CLOUD TECHNICAL CONSULTANT MICROSOFT CERTIFIED TRAINER. New protection capabilities in Windows Server 2016 HAROLD BAELE MICROSOFT CLOUD TECHNICAL CONSULTANT MICROSOFT CERTIFIED TRAINER New protection capabilities in Windows Server 2016 HAROLD BAELE MICROSOFT CLOUD TECHNICAL CONSULTANT AND MICROSOFT CERTIFIED

More information

Course Outline. Course Outline :: 20744A::

Course Outline. Course Outline :: 20744A:: Module Title : 20744A: Securing Windows Server 2016 Duration : 5 days Overview This five-day, instructor-led course teaches IT professionals how they can enhance the security of the IT infrastructure that

More information

Course Outline. Implementing and Managing Windows 10 Course C: 5 days Instructor Led

Course Outline. Implementing and Managing Windows 10 Course C: 5 days Instructor Led Implementing and Managing Windows 10 Course 20697-1C: 5 days Instructor Led About this course This course is designed to provide students with the knowledge and skills required to install and configure

More information

[MS20744]: Securing Windows Server 2016

[MS20744]: Securing Windows Server 2016 [MS20744]: Securing Windows Server 2016 Length : 5 Days Audience(s) : IT Professionals Level : 300 Technology : Windows Server Delivery Method : Instructor-led (Classroom) Course Overview This five-day,

More information

COURSE 10982: SUPPORTING AND TROUBLESHOOTING WINDOWS 10

COURSE 10982: SUPPORTING AND TROUBLESHOOTING WINDOWS 10 ABOUT THIS COURSE This course is designed to provide students with the knowledge and skills required to support and troubleshoot Windows 10 PCs and devices in a Windows Server domain environment. These

More information

Installing and Configuring Windows 10 5 Days, Instructor-led

Installing and Configuring Windows 10 5 Days, Instructor-led Installing and Configuring Windows 10 5 Days, Instructor-led Course Description This course is designed to provide students with the knowledge and skills required to install and configure Windows 10 desktops

More information

Securing Windows Server 2016

Securing Windows Server 2016 Course 20744C: Securing Windows Server 2016 Page 1 of 7 Securing Windows Server 2016 Course 20744C: 4 days; Instructor-Led Introduction This four-day, instructor-led course teaches IT professionals how

More information

"Charting the Course... MOC C: Securing Windows Server Course Summary

Charting the Course... MOC C: Securing Windows Server Course Summary Course Summary Description This five-day, instructor-led course teaches IT professionals how they can enhance the security of the IT infrastructure that they administer. This course begins by emphasizing

More information

Course : Installing and Configuring Windows 10

Course : Installing and Configuring Windows 10 Course 20697-1: Installing and Configuring Windows 10 Course details Module 1: Overview of Windows 10 This module introduces the Windows 10 operating system. It describes the new features in Windows 10,

More information

Course 10982B: Supporting and Troubleshooting Windows 10

Course 10982B: Supporting and Troubleshooting Windows 10 C O U R S E O U T L I N E P A G E 1 Course 10982B: Supporting and Troubleshooting Windows 10 Duration 5 Days About this course This course is designed to provide students with the knowledge and skills

More information

Overview. Audience Profile. At Course Completion. Module Title : 10982B: Supporting and Troubleshooting Windows 10. Course Outline :: 10982B::

Overview. Audience Profile. At Course Completion. Module Title : 10982B: Supporting and Troubleshooting Windows 10. Course Outline :: 10982B:: Module Title : 10982B: Supporting and Troubleshooting Windows 10 Duration : 5 days Overview This course is designed to provide students with the knowledge and skills required to support and troubleshoot

More information

10982 Supporting and Troubleshooting Windows 10

10982 Supporting and Troubleshooting Windows 10 10982 Supporting and Troubleshooting Windows 10 This course is designed to provide students with the knowledge and skills required to support and troubleshoot Windows 10 PCs and devices in a Windows Server

More information

Securing Windows Server 2016

Securing Windows Server 2016 Course 20744: Securing Windows Server 2016 Page 1 of 7 Securing Windows Server 2016 Course 20744: 4 days; Instructor-Led Introduction This four-day, instructor-led course teaches IT professionals how they

More information

Supporting and Troubleshooting Windows 10

Supporting and Troubleshooting Windows 10 Supporting and Troubleshooting Windows 10 OD10982B; On-Demand, Video-based Course Description This course is designed to provide students with the knowledge and skills required to support and troubleshoot

More information

Microsoft Exam

Microsoft Exam Volume: 59 Questions Question: 1 Your network contains an Active Directory forest named contoso.com. The forest functional level is Windows Server 2012. All servers run Windows Server 2016. You create

More information

20744: Securing Windows Server Sobre o curso. Microsoft. Nível: Avançado Duração: 35h

20744: Securing Windows Server Sobre o curso. Microsoft. Nível: Avançado Duração: 35h 20744: Securing Windows Server 2016 Microsoft Nível: Avançado Duração: 35h Sobre o curso This five-day, instructor-led course teaches IT professionals how they can enhance the security of the IT infrastructure

More information

BitLocker Encryption for non-tpm laptops

BitLocker Encryption for non-tpm laptops BitLocker Encryption for non-tpm laptops Contents 1.0 Introduction... 2 2.0 What is a TPM?... 2 3.0 Users of non-tpm University laptops... 2 3.1 Existing Windows 7 laptop users... 2 3.2 Existing Windows

More information

Course: Windows 7 Enterprise Desktop Support Technician Boot Camp (MCITPWIN7)

Course: Windows 7 Enterprise Desktop Support Technician Boot Camp (MCITPWIN7) Course: Enterprise Desktop Support Technician Boot Camp (MCITPWIN7) Course Length: Duration 5 days Course Code: MCITPWIN7 Course Description Having reviewed course MS-50331 - Enterprise Support Technician

More information

Installing and Configuring Windows 10

Installing and Configuring Windows 10 Course 20698A: Installing and Configuring Windows 10 Course details Course Outline Module 1: Installing Windows 10 This module describes the features of Windows 10 and the process for installing and deploying

More information

Windows Server Security Guide

Windows Server Security Guide Windows Server Security Guide August 2017 Contents Windows Server 2016 Security Guide... 3 Why is Windows Server 2016 security important?... 3 How does Windows Server 2016 help prevent and detect compromise?...

More information

Planning for and Managing Devices in the Enterprise: Enterprise Management Suite (EMS) & On-Premises Tools

Planning for and Managing Devices in the Enterprise: Enterprise Management Suite (EMS) & On-Premises Tools Enterprise Management Suite (EMS) & On-Premises Tools Page 1 of 7 Planning for and Managing Devices in the Enterprise: Enterprise Management Suite (EMS) & On-Premises Tools Course 20398A: 4 days; Instructor-Led

More information

Supporting and Troubleshooting Windows 10

Supporting and Troubleshooting Windows 10 Course 10982B: Supporting and Troubleshooting Windows 10 Page 1 of 7 Supporting and Troubleshooting Windows 10 Course 10982B: 4 days; Instructor-Led Introduction This course is designed to provide students

More information

Course D:Implementing and Managing Windows 100

Course D:Implementing and Managing Windows 100 Course 20697-1D:Implementing and Managing Windows 100 About this course: This course provides students with the knowledge and skills required to install and configure Windows 10 desktops and devices in

More information

Course Outline 20698B

Course Outline 20698B Course Outline 20698B Module 1: Installing Windows 10 This module describes the features of Windows 10 and the process for installing and deploying it. The module also describes how to upgrade to Windows

More information

Course Outline 20744B

Course Outline 20744B Course Outline 20744B Module 1: Attacks, breach detection, and Sysinternals tools In this module, students will learn about breach detection, attack types and vectors, cybercrime, and how you can analyse

More information

Active Directory Attacks and Detection

Active Directory Attacks and Detection Active Directory Attacks and Detection #Whoami Working as an Information Security Executive Blog : www.akijosberryblog.wordpress.com You can follow me on Twitter: @AkiJos This talk is Based on Tim Madin

More information

Installing and Configuring Windows 10

Installing and Configuring Windows 10 Installing and Configuring Windows 10 Course 20697-1B 5 Days Instructor-led, Hands-on Course Description This five day, instructor led course is designed to provide students with the knowledge and skills

More information

Windows 10 MCSA Bootcamp

Windows 10 MCSA Bootcamp Course Overview This five day course will cover the topics necessary to prepare attendees with the baseline knowledge to take the 70-697 and 70-698 exams for the Windows 10 MCSA. Upcoming Dates This is

More information

Updating Your Technology Knowledge of Microsoft Windows XP to Windows 7 Beta

Updating Your Technology Knowledge of Microsoft Windows XP to Windows 7 Beta Updating Your Technology Knowledge of Microsoft Windows XP to Windows 7 Beta Course Number: 6291A Course Length: 3 Days Course Overview This instructor-led course provides students with the knowledge &

More information

Practical Network Defense Labs

Practical Network Defense Labs Practical Network Defense Labs ABOUT This document showcases my practical hands-on engagements in the elearnsecurity HERA labs environment for the Network Defense Professional certification course. I utilized

More information

Managing Windows Environments with Group Policy

Managing Windows Environments with Group Policy Managing Windows Environments with Group Policy 50255D; 5 Days, Instructor-led Course Description In this course, you will learn how to reduce costs and increase efficiencies in your network. You will

More information

Planning for and Managing Devices in the Enterprise: Enterprise Mobility Suite (EMS) & On- Premises Tools

Planning for and Managing Devices in the Enterprise: Enterprise Mobility Suite (EMS) & On- Premises Tools Planning for and Managing Devices in the Enterprise: Enterprise Mobility Suite (EMS) & On- Premises Tools 20398BA - 5 Days - Instructor-led, Hands-on Introduction This five-day course teaches IT professionals

More information

70-697: Configuring Windows Devices Course 7 Managing Apps

70-697: Configuring Windows Devices Course 7 Managing Apps 70-697: Configuring Windows Devices Course 7 Managing Apps Slide 1 Installing and Configuring Applications Working with Windows Store Apps Managing Web Browsers Slide 2 Applications are primary tools that

More information

Tuning SQL Server for SharePoint. Daniel Glenn InfoWorks, Inc.

Tuning SQL Server for SharePoint. Daniel Glenn InfoWorks, Inc. Tuning SQL Server for SharePoint Daniel Glenn InfoWorks, Inc. About me Collaboration Practice leader at InfoWorks Inc. @DanielGlenn DanielGlenn.com User Group leader x2 Nashville SharePoint & SQL Saturdays

More information

Course Outline. Installing and Configuring Windows 10 Course 20698A 5 days Instructor Led

Course Outline. Installing and Configuring Windows 10 Course 20698A 5 days Instructor Led Installing and Configuring Windows 10 Course 20698A 5 days Instructor Led About this course This five-day instructor-led course provides IT professionals with the knowledge and skills required to install

More information

Windows Security Master Class with Paula Januszkiewicz. May 22 24, 2013 Belgium (TBD)

Windows Security Master Class with Paula Januszkiewicz. May 22 24, 2013 Belgium (TBD) Windows Security Master Class with Paula Januszkiewicz May 22 24, 2013 Belgium (TBD) Overview The deep dive Windows Security Master Class teaches advanced Windows operating system security, based on Windows

More information

Windows Client, Enterprise Desktop Support Technician

Windows Client, Enterprise Desktop Support Technician Course 50331D: Windows Client, Enterprise Desktop Support Technician Page 1 of 11 Windows Client, Enterprise Desktop Support Technician Course 50331D: 3 days; Instructor-Led Introduction (Updated for Windows

More information

More about Windows OS Security

More about Windows OS Security OPC Presentation 10-31-17 More about Windows OS Security By Len Groth PC Security by Listing Blacklisting Greylisting Whitelisting Blacklisting* (in Computing) A Blacklist is an access control system that

More information

Securing Windows Server 2016 (20744)

Securing Windows Server 2016 (20744) Securing Windows Server 2016 (20744) Formato do curso: Presencial Localidade: Lisboa Data: 13 Mai. 2019 a 17 Mai. 2019 Preço: 1670 Horário: Laboral - das 09h30 às 17h30 Duração: 35 horas This five-day,

More information

20698 Installing and Configuring Windows 10. Course Content. Course ID #: W Hours: 35. Course Description: At Course Completion:

20698 Installing and Configuring Windows 10. Course Content. Course ID #: W Hours: 35. Course Description: At Course Completion: Course Content Course Description: This five-day instructor-led course provides IT professionals with the knowledge and skills required to install and configure Windows 10 desktops in a Windows Server

More information

Microsoft Securing Windows Server 2016

Microsoft Securing Windows Server 2016 1800 ULEARN (853 276) www.ddls.com.au Length 5 days Microsoft 20744 - Securing Windows Server 2016 Price $4290.00 (inc GST) Version B Overview This five-day, instructor-led course teaches IT professionals

More information

Computers Gone Rogue. Abusing Computer Accounts to Gain Control in an Active Directory Environment. Marina Simakov & Itai Grady

Computers Gone Rogue. Abusing Computer Accounts to Gain Control in an Active Directory Environment. Marina Simakov & Itai Grady Computers Gone Rogue Abusing Computer Accounts to Gain Control in an Active Directory Environment Marina Simakov & Itai Grady Motivation Credentials are a high value target for attackers No need for 0-day

More information

Leveraging Azure Services for a Scalable Windows Remote Desktop Deployment

Leveraging Azure Services for a Scalable Windows Remote Desktop Deployment WEBINAR Leveraging Azure Services for a Scalable Windows Remote Desktop Deployment May 16 2018 About Me 18+ years in IT Blog at www.ciraltos.com, Twitter @ciraltos Work at Bowman and Brooke LLP as IT Infrastructure

More information

Key Threats Melissa (1999), Love Letter (2000) Mainly leveraging social engineering. Key Threats Internet was just growing Mail was on the verge

Key Threats Melissa (1999), Love Letter (2000) Mainly leveraging social engineering. Key Threats Internet was just growing Mail was on the verge Key Threats Internet was just growing Mail was on the verge Key Threats Melissa (1999), Love Letter (2000) Mainly leveraging social engineering Key Threats Code Red and Nimda (2001), Blaster (2003), Slammer

More information

Planning for and Managing Devices in the Enterprise: Enterprise Mobility Suite (EMS) & On-Premises Tools

Planning for and Managing Devices in the Enterprise: Enterprise Mobility Suite (EMS) & On-Premises Tools Planning for and Managing Devices in the Enterprise: Enterprise Mobility Suite (EMS) & On-Premises Tools OD20398B; On-Demand, Video-based Course Description This course teaches IT professionals how to

More information

microsoft. Number: Passing Score: 800 Time Limit: 120 min.

microsoft. Number: Passing Score: 800 Time Limit: 120 min. 70-744 microsoft Number: 70-744 Passing Score: 800 Time Limit: 120 min Exam A QUESTION 1 This question is part of a series of question that use the same or similar answer choices. Your network contains

More information

microsoft. Number: Passing Score: 800 Time Limit: 120 min.

microsoft. Number: Passing Score: 800 Time Limit: 120 min. 70-744 microsoft Number: 70-744 Passing Score: 800 Time Limit: 120 min Exam A QUESTION 1 This question is part of a series of question that use the same or similar answer choices. Your network contains

More information

Windows 10. scalable IT services & solutions. October 25, Bruce Ward, VP of Business Strategy. Dan Sharp, Senior Consultant

Windows 10. scalable IT services & solutions. October 25, Bruce Ward, VP of Business Strategy. Dan Sharp, Senior Consultant Windows 10 October 25, 2018 Helping you grow your business with Bruce Ward, VP of Business Strategy scalable IT services & solutions Dan Sharp, Senior Consultant for today s challenges & tomorrow s vision.

More information

COURSE 20698A: INSTALLING AND CONFIGURING WINDOWS 10

COURSE 20698A: INSTALLING AND CONFIGURING WINDOWS 10 ABOUT THIS COURSE This five-day instructor-led course provides IT professionals with the knowledge and skills required to install and configure Windows 10 desktops in a Windows Server small to medium-sized

More information

Exam Name: Microsoft Managing and Maintaining Windows 8

Exam Name: Microsoft Managing and Maintaining Windows 8 Vendor: Microsoft Exam Code: 70-688 Exam Name: Microsoft Managing and Maintaining Windows 8 Version: DEMO QUESTION 1 Your company recently purchased 25 new laptops. All 25 laptops have the same hardware

More information

Windows 10 Deployment and Security. Crissier Jean-Francois Ageneau

Windows 10 Deployment and Security. Crissier Jean-Francois Ageneau Windows 10 Deployment and Security Crissier 08.03.17 Jean-Francois Ageneau Agenda 1. Plan 2. Build 3. Run 4. Challenges 10.03.2016 Crissier Bechtle IT-Forum Lausanne Jean-Francois Ageneau Plan 10/03/2017

More information

Windows 8 Deployment

Windows 8 Deployment Windows 8 Deployment Agenda Hardware/Software Compatibility and Toolsets Image Engineering and Deployment Volume Activation Security Management Application Lifecycle User Settings System Center 2012 Configuration

More information

Windows 8 Boot Camp 6439; 5 Days, Instructor-led

Windows 8 Boot Camp 6439; 5 Days, Instructor-led Windows 8 Boot Camp 6439; 5 Days, Instructor-led Course Description: In an intensive and immersive hands-on learning environment, you will build the skills needed configure, manage, and maintain a Windows

More information

How to be a Super Team Owner

How to be a Super Team Owner How to be a Super Team Owner Withum Digital WithumSmith+Brown, PC BE IN A POSITION OF STRENGTH 1 ABOUT ME - @melihubb Microsoft MVP Office 365 and SharePoint consultant who specializes in simplifying and

More information

This video is part of the Microsoft Virtual Academy.

This video is part of the Microsoft Virtual Academy. This video is part of the Microsoft Virtual Academy. 1 In this session we re going to talk about building for the private cloud using the Microsoft deployment toolkit 2012, my name s Mike Niehaus, I m

More information

Endpoint Protection with DigitalPersona Pro

Endpoint Protection with DigitalPersona Pro DigitalPersona Product Brief Endpoint Protection with DigitalPersona Pro An introductory technical overview to DigitalPersona s suite for Access Management, Data Protection and Secure Communication. April

More information

50331 Windows Client, Enterprise Desktop Support Technician

50331 Windows Client, Enterprise Desktop Support Technician Course This course provides students with the knowledge and skills needed to isolate, document and resolve problems on Windows Desktops in a corporate domain. The material is geared towards corporate IT

More information

The secondary audience for this course can include students preparing to take exam

The secondary audience for this course can include students preparing to take exam Module Title : Course 20688C : Supporting Windows 8.1 Duration : 5 days Course Overview This five day course will provide you with the knowledge and skills required to support a Windows 8.1 deployment

More information

1 - MANAGING DESKTOPS AND DEVICES IN AN ENTERPRISE ENVIRONMENT (MODULE 1: )

1 - MANAGING DESKTOPS AND DEVICES IN AN ENTERPRISE ENVIRONMENT (MODULE 1: ) Windows 10 MCSA Bootcamp This five day course will cover the topics necessary to prepare attendees with the baseline knowledge to take the 70-697 and 70-698 exams for the Windows 10 MCSA. Length Days:

More information

Securing Windows Server 2016

Securing Windows Server 2016 Securing Windows Server 2016 Varighed: 5 Days Kursus Kode: M20744 Beskrivelse: This five-day, instructor-led course teaches IT professionals how they can enhance the security of the IT infrastructure that

More information

Installing and Configuring Windows 10

Installing and Configuring Windows 10 Windows 10 Course - 20698 Installing and Configuring Windows 10 Length 5 days What You'll Learn Plan, install, and upgrade to Windows 10. Perform post-installation configuration. Implement networking.

More information

Identity & Access Management

Identity & Access Management Identity & Access Management THE PROBLEM: HOW DO WE ENABLE PRODUCTIVITY WITHOUT COMPROMISING SECURITY? S E C U R I T Y OR P R O D U C T I V I T Y On-premises THE PROBLEM: HOW DO WE ENABLE PRODUCTIVITY

More information

COPYRIGHTED MATERIAL. Contents. Assessment Test

COPYRIGHTED MATERIAL. Contents. Assessment Test Contents Introduction Assessment Test xxvii xxxvii Chapter 1 Installing Windows 7 1 Introducing Windows 7 2 Windows 7 Architecture 5 Preparing to Install Windows 7 6 Windows 7 Starter 7 Windows 7 Home

More information

Welcome to the NYExUG March Meeting

Welcome to the NYExUG March Meeting Welcome to the NYExUG March Meeting March Meeting Exchange 2007 Direct File Access Feature Explained & how a VPN is not required April Meeting Messageware Sponsorship & Demo - creator of enhanced OWA functionality

More information

Pass-the-Hash Attacks

Pass-the-Hash Attacks Pass-the-Hash Attacks Mgr. Michael Grafnetter www.dsinternals.com Agenda PtH Attack Anatomy Mitigation Proactive Reactive Windows 10 + Windows Server 2016 Microsoft Advanced Threat Analytics PtH Attack

More information

Pass-the-Hash Attacks. Michael Grafnetter

Pass-the-Hash Attacks. Michael Grafnetter Pass-the-Hash Attacks Michael Grafnetter www.dsinternals.com Agenda PtH Attack Anatomy Mitigation Proactive Reactive Windows 10 + Windows Server 2016 PtH History and Future 1988 Microsoft releases Lan

More information

Installing and Configuring Windows 10

Installing and Configuring Windows 10 Course 20698: Installing and Configuring Windows 10 Page 1 of 8 Installing and Configuring Windows 10 Course 20698: 4 days; Instructor-Led About This Course This four-day instructor-led course provides

More information

Implementing and Managing Windows 10

Implementing and Managing Windows 10 Implementing and Managing Windows 10 20697-1C; 5 Days; Instructor-led Course Description This course is designed to provide students with the knowledge and skills required to install and configure Windows

More information

Securing Windows Server 2016

Securing Windows Server 2016 Securing Windows Server 2016 Duration: 5 Days Course Code: M20744 Version: C Delivery Method: Elearning (Self-paced) Overview: This five-day, instructor-led course teaches IT professionals how they can

More information

Part I. Windows XP Overview, Installation, and Startup COPYRIGHTED MATERIAL

Part I. Windows XP Overview, Installation, and Startup COPYRIGHTED MATERIAL Part I Windows XP Overview, Installation, and Startup COPYRIGHTED MATERIAL Chapter 1 What s New in Windows XP? Windows XP suffers somewhat from a dual personality. In some ways it is a significant release,

More information

Getting over Ransomware - Plan your Strategy for more Advanced Threats

Getting over Ransomware - Plan your Strategy for more Advanced Threats Getting over Ransomware - Plan your Strategy for more Advanced Threats Kaspersky Lab Hong Kong Eric Kwok General Manager Lapcom Ltd. BEYOND ANTI-VIRUS: TRUE CYBERSECURITY FROM KASPERSKY LAB 20 years ago

More information

Online Resources. Compare Windows 10 Editions. Setup a device for anyone to use (Kiosk mode)

Online Resources. Compare Windows 10 Editions. Setup a device for anyone to use (Kiosk mode) Online Resources Compare Windows 10 Editions https://www.microsoft.com/en-us/windowsforbusiness/compare Setup a device for anyone to use (Kiosk mode) https://technet.microsoft.com/en-us/library/mt219050(v=vs.85).aspx

More information

Supporting and Troubleshooting Windows 10 va. Overview

Supporting and Troubleshooting Windows 10 va. Overview Supporting and Troubleshooting Windows 10 va Overview This course is designed to provide students with the knowledge and skills required to support and troubleshoot Windows 10 PCs and devices in a Windows

More information

Configuring Windows 10 Devices (697)

Configuring Windows 10 Devices (697) Configuring Windows 10 Devices (697) Manage Identity Support Microsoft Store, Microsoft Store for Education, Microsoft Store for Business, and cloud apps. Install and manage software by using Microsoft

More information

YOUR IT REMOTE MANAGEMENT & SUPPORT SOLUTION. Goverlan REACH vs TeamViewer

YOUR IT REMOTE MANAGEMENT & SUPPORT SOLUTION. Goverlan REACH vs TeamViewer YOUR IT REMOTE MANAGEMENT & SUPPORT SOLUTION Goverlan REACH vs TeamViewer UPDATED: 03/09/2018 GOVERLAN vs TEAMVIEWER Schedule a demo Request a Free-Trial Looking for a TeamViewer alternative? Read our

More information

JAMF Nation Roadshow. Sachin Parmar End User Toolset Manager

JAMF Nation Roadshow. Sachin Parmar End User Toolset Manager JAMF Nation Roadshow Sachin Parmar End User Toolset Manager About Just Eat Our vision Creating the world s greatest food community 3 About Me About Me Sachin Parmar 7+ years professionally in the Technology

More information

COURSE B: INSTALLING AND CONFIGURING WINDOWS 10

COURSE B: INSTALLING AND CONFIGURING WINDOWS 10 ABOUT THIS COURSE This course is designed to provide students with the knowledge and skills required to install and configure Windows 10 desktops and devices in a Windows Server domain corporate environment.

More information

Microsoft Installing and Configuring Windows 10

Microsoft Installing and Configuring Windows 10 1800 ULEARN (853 276) www.ddls.com.au Microsoft 20698 - Installing and Configuring Windows 10 Length 5 days Price $4290.00 (inc GST) Version B Overview This five-day instructor-led course provides IT professionals

More information

Securing Windows Server 2016 (20744)

Securing Windows Server 2016 (20744) Securing Windows Server 2016 (20744) Duration: 5 Days Price: $895 Delivery Option: Attend via MOC On-Demand Students Will Learn Securing Windows Server Protecting credentials and implement privileged access

More information

Premediation. The Art of Proactive Remediation. Matthew McWhirt, Senior Manager Manfred Erjak, Principal Consultant OCTOBER 1 4, 2018 WASHINGTON, D.C.

Premediation. The Art of Proactive Remediation. Matthew McWhirt, Senior Manager Manfred Erjak, Principal Consultant OCTOBER 1 4, 2018 WASHINGTON, D.C. Premediation The Art of Proactive Remediation Matthew McWhirt, Senior Manager Manfred Erjak, Principal Consultant OCTOBER 1 4, 2018 WASHINGTON, D.C. Overview Case Study Remediation Overview Premediation

More information

Expert Reference Series of White Papers. BitLocker: Is It Really Secure? COURSES.

Expert Reference Series of White Papers. BitLocker: Is It Really Secure? COURSES. Expert Reference Series of White Papers BitLocker: Is It Really Secure? 1-800-COURSES www.globalknowledge.com BitLocker: Is It Really Secure? Mark Mizrahi, Global Knowledge Instructor, MCSE, MCT, CEH Introduction:

More information