BEGIN:VCALENDAR
VERSION:2.0
PRODID:Data::ICal 0.24
BEGIN:VEVENT
DESCRIPTION:   'Title: Finding Holes in Conditional Access Policies\n   Whe
 n: Saturday\, Aug 10\, 12:15 - 12:40 PDT\n   Where: LVCC West/Floor 1/Hall
  2/HW2-09-01 - [1]Map\n\n   Description:\n\n   Microsoft Entra Conditional
  Access sits at the forefront of\n   organization's security boundaries. T
 he ever-changing climate of\n   conditional access continues to give admin
 istrators more and more\n   security controls. The tradeoff of which is in
 creased complexity when\n   attempting to balance security and productivit
 y. The more policies\n   deployed in a tenant\, the greater the chance for
  misconfigurations\n   that create opportunities for exploitation. Whether
  you're a cloud\n   administrator\, security consultant\, or adversary\, t
 he goal remains the\n   same: to find the holes in conditional access.\n\n
    This talk discusses lessons learned from real-life engagements and\n   
 identifies multiple strategies for evaluating conditional access.\n   Topi
 cs and tooling are explored that view conditional access from\n   several 
 different angles. First\, understanding PowerShell and Graph\n   API is vi
 tal when combing through policies\, finding gaps in user\,\n   group\, rol
 e\, location\, application\, or device configuration. Second\,\n   simulat
 ion of logon criteria and reporting on authentication events\n   helps to 
 understand where policies fall short. Finally\, creating a\n   visual repr
 esentation of each policy is helpful to better see policy\n   details or b
 uild executive reports. Each of these provides an\n   important piece of t
 he puzzle when attempting to identify methods to\n   bypass security contr
 ols. Audience members should expect to leave with\n   an arsenal of new to
 ols and techniques to continuously monitor\n   conditional access for risk
 .\n\n   SpeakerBio:  Brandon Colley\, Senior Security Consultant at Trimar
 c\n\n   Brandon Colley has over fifteen years of experience administering 
 and\n   securing Active Directory (AD) and Windows environments. Brandon i
 s a\n   Senior Security Consultant for Trimarc specializing in providing\n
    reality-based AD and Entra ID security assessments. He served as a\n   
 systems administrator for multiple organizations before shifting\n   caree
 r focus to information security. He has published multiple\n   articles th
 rough Quest\, Practical 365 and Trimarc Hub. Brandon enjoys\n   speaking e
 ngagements and has previously presented at BsidesKC\, Hackers\n   Teaching
  Hackers\, and PancakesCon. He co-hosts a weekly podcast\,\n   interviewin
 g infosec professionals and has appeared on multiple\n   broadcasts\, incl
 uding the Phillip Wylie Show. Brandon delivers\n   material in a humorous\
 , yet effective manner with a focus on content\n   built for a Blue Team t
 hrough a Red lens.\n\n   '\n\n   1. #LVCCW_Level1_Hall2\n\n\n
DTEND:20240810T194000Z
DTSTART:20240810T191500Z
LOCATION:CLV - LVCC West/Floor 1/Hall 2/HW2-09-01
SUMMARY:Finding Holes in Conditional Access Policies
END:VEVENT
END:VCALENDAR
