IT Navigator - Daymark Solutions Blog

Modernize Identities with Microsoft Entra ID

Written by Blake Bernard | Tue, Sep 03, 2024

One of the most common cyberattack vectors is compromised credentials. Malicious actors with access to AI technologies have increased the sophistication and effectiveness of their attacks. The rise in phishing attacks and malicious actors gaining access to AI technologies has resulted in sharp increases in credential theft. In addition to credential theft, token theft or hijacking is also on the rise. Staying one step ahead of the bad guys is a constant battle for organizations of every size.

Why is This Critical Now? The Deadline is Looming.

In March 2023, Microsoft announced the deprecation of managing authentication methods in the legacy multifactor authentication and self-service password reset (SSPR) policies. Beginning September 30, 2025, authentication methods can't be managed in these legacy MFA and SSPR policies.

Enter Microsoft Entra ID!

Entra ID (formerly Azure Active Directory) is a cloud identity and access management solution that safeguards your identities and network access. It allows organizations to adopt a Zero Trust security approach by verifying identities, validating access conditions, checking permissions, encrypting communication channels, and monitoring for breaches.

Getting Started with Entra ID

Daymark provides up-to-date best practices to improve your security posture and protect your identities. Our two Daymark Entra ID consulting offerings will assist with your Entra ID migration and both offerings include a 2-hour introductory workshop for Entra ID Suite.  

Entra ID Plan 1

Overview

Microsoft Entra ID Plan 1 offers a range of features designed to enhance identity and access management for organizations. Key features included in this plan
are Conditional Access, Role-Based Access Control (RBAC), Advanced Group Management, Cross-Tenant User Synchronization, Global Password Protection and Management, Self-Service Group Management, and
Hybrid Identity Support.

Plan Features

  • Evaluate current conditional access policies and provide recommendations
  • Migrate tenant to new authentication methods policies
    • Microsoft will require this to be completed by September 30, 2025
    • Provide guidance on disabling SMS messaging for MFA
  • Configure MFA for all users with conditional access policies
  • Configure strong MFA for Admin accounts
  • Protect MFA registrations
  • 2-Hour Entra ID Introductory Workshop

Entra ID Plan 2

Overview

Microsoft Entra ID offers a range of features designed to enhance identity and access management for organizations. Key features included are Conditional Access, Role-Based Access Control (RBAC), Advanced Group Management, Cross-Tenant User Synchronization, Global Password Protection and Management, Self- Service Group Management, and Hybrid Identity Support.

Microsoft Entra ID Plan 2 offers advanced identity and access management features, building on the capabilities of Plan 1. Key features included in this plan are all features of Plan 1, Identity Protection, Privileged Identity Management (PIM), Access Reviews, and Entitlement Management.

Plan Features

  • Evaluate current conditional access policies and provide recommendations
  • Migrate tenant to new authentication methods policies
  • Microsoft will require this to be completed by September 30, 2025
  • Provide guidance on disabling SMS messaging for MFA
  • Configure MFA for all users with conditional access policies
  • Configure strong MFA for Admin accounts
  • Configure risk-based profile mitigation with conditional access policy in Entra ID plan 2
    • Enforce continuous Access Evaluation
  • Identity Protection (Cloud Accounts)
  • Configure Privileged Identity Management for privileged roles
    • Require phishing resistant MFA
  • Configure Access Reviews for sensitive groups and roles

Introductory Workshop for Entra ID Suite Plan 1 and Plan 2

Daymark’s Entra ID Suite Introductory Workshop combines security best practices and our expertise to ensure secure access for your employees to apps and resources in any cloud or on-premises. This 2-hour in-depth workshop details how Entra ID can help your organization maximize security, covering:

  • Introduction to the Entra ID Suite
  • Entra Internet Access
  • Entra Private Access
  • Entitlement Management

Getting Started

With deadlines looming, now is the time to modernize and protect your identities and increase your overall security posture in Microsoft 365. Our Entra ID Suite Workshop is the perfect place to start. Contact me to get started.