Jeffrey Tigchelaar-Moerbeek

Jeffrey Tigchelaar-Moerbeek

Microsoft 365 Security & Modern Workplace Consultant, focused on identity and automation

Amsterdam, The Netherlands

Actions

A IT Security & Modern Workplace professional with a passion for the craft. Jeffrey is someone with more than 16 years deep into the Microsoft ecosystem, who's not shy of researching and testing out new techniques and tactics.

Area of Expertise

  • Information & Communications Technology

Topics

  • Entra
  • Microsoft Entra
  • Microsoft 365
  • Microsoft Defender XDR
  • Microsoft Intune
  • Intune

103 settings later: what actually matters for a Windows 365 PAW

It's a pain to use a PAW. There are multiple hoops to jump through, administrators using break glass accounts to work around the PAW's and an enormous time sink for people who just want to do their work.

In this session we build a PAW based on Windows 365 Cloud PC. We start with why a dedicated privileged workstation matters and what it protects you from. We will then go through the open sourced project to implement this in your own organization. This does not only go through the configuration profiles needed for Windows 365, but throughout the whole Microsoft 365 ecosystem, going as far as using Global Secure Access and putting the PAW's into a Restricted Management Administrative Unit.

Expect real configurations, the settings that broke along the way, and a design you can take home and adapt for your own organization.

Emergency Access done right – Setting up Microsoft 365 for success during disasters

Imagine this: it’s Monday morning and your administrators are locked out of Microsoft 365. A Conditional Access policy went wrong, authentication is failing, and your normal admin accounts can no longer get you back in. What’s your way back in?

This is where emergency access matters. But having a break-glass account is only the beginning. It needs to be securely designed, protected, monitored and regularly tested because the moment you need it is the worst possible time to discover that it doesn't work.

In this session, we explore why break-glass accounts are needed and how to design them so they remain available during an incident while minimizing the risk of misuse.

We’ll walk through real-world scenarios where normal administrative access can fail, and show how to build a secure emergency access strategy using Microsoft Entra ID and Microsoft security capabilities. This includes Restricted Management Administrative Units (RMAU), phishing-resistant authentication, and Microsoft Defender custom detection rules.

We’ll also look beyond the account itself and place break-glass access within a broader disaster recovery plan: how often should you test it? What tenant information should be securely stored in your vault? Who needs to be involved when emergency access is required? And how do you make sure the recovery process still works when you actually need it?

Jeffrey Tigchelaar-Moerbeek

Microsoft 365 Security & Modern Workplace Consultant, focused on identity and automation

Amsterdam, The Netherlands

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top