Vincent Choy
Senior Cloud Consultant
Kuala Lumpur, Malaysia
Actions
Vincent Choy is Senior Consultant for Cloud Adoption for Fedelis Asia Group of Companies. He has been awarded Microsoft Most Valuable Professional since 2014 He appears regularly on local media sharing his views on how modern work platforms like Microsoft365 gives local companies the competing edge. He is also actively promoting the Modern Work Community Interest Group in Kuala Lumpur
To date, Vincent and his team has a installed base of more than 20,000 Office365 seats, ranging from 3 person outfits to large enterprises.
Area of Expertise
Topics
Anti-Spoofing using SPF, DKIM and DMARC for Microsoft365
Email Spoofing has become common place. Hackers are creating fake email and messages, targeting both the unsuspecting public, your customers, or even your own users, for financial and other malicious gains.
Starting 3rd October 2023, in order to address email spoofing, Gmail and Yahoo announced bulk senders sending to their mail servers are required to have DMARC configured.
This is because Email lacks the ability to verify authenticity of all received mails. Fraudsters have taken advantage of this fundamental flaw to full advantage.
Developed in 2012, DMARC (Domain-based Message Authentication, Reporting & Conformance – RFC 7489) is an email authentication protocol that gives insight into how email is delivered. DMARC gives email senders the ability to not only receive feedback about how receivers treat their email, but also the ability to inform receivers to reject illegitimate messages. DMARC is helping organizations of every size ensure reliability and prevent phishing and domain spoofing.
Many security devices and email providers have adopted the SPF, DKIM and DMARC standards, including Microsoft Office 365.
Ensuring your own IT environment complies with this standard would help in the following ways –
•Prevent Enterprise spear phishing, and other attack variants such as CEO email fraud
•Detect misconfigurations of the underlying SPF and DKIM settings
•Inventory of all email senders using the valid email domain
However, how does this framework function? How do we set it in Office365? How well does it prevent Spoofing? What’s the right way of implementing it? This session discusses these areas.
Small teams, Big Impact: How Microsoft365 Copilots Are Changing the Way We Work
In this talk, we’ll explore how Microsoft365 Copilot began by embedding AI into the apps we already use, automating tasks like drafting emails, building presentations, and designing forms. That was just the beginning. Today, with Microsoft365 Copilot virtual agents, businesses can assign digital specialists to specific roles, each trained to read your documents, policies, and data, and ready to advise on tasks like strategic planning, hiring, customer service, and decision-making. These virtual agents don’t just automate, they collaborate, helping small teams operate with the clarity, speed, and capacity of much larger ones. You’ll walk away with practical ideas on how to get more done with less—boosting productivity, scaling your team’s output, and staying competitive even when resources are tight. Covers Microsoft chat agents, in-app agents, specialized agents and cowork agents.
Safeguarding your Microsoft Tenant against account lockouts
Recently we have observed increasing incidents of EntraID Administrator Account lockouts on global forums. Reasons vary, lost authentication device, uncontactable administrator, account takeover by cybercriminals etc. In the end, the tenant owner loses control of the tenant, and sometimes the tenant is then used for cybercrime related activities.
Join us for an insightful session on Entra ID Administrator Accounts Security Best Practices, where we’ll dive into how you can secure your Global Administrator accounts to maintain organizational stability.
Learn about the common threats, both external and internal, that can compromise these critical accounts. We’ll also discuss the consequences of account lockouts, the principles of secure admin practices and emergency access admin accounts, and practical strategies to safeguard your admin accounts with tools you can self-create like the Global Admin Account Kit, Role Based Admin Account Kit and the Account Lockout Recovery Kit.
Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.
Jump to top