Watch my Microsoft Agent 365 portal overview: inventory, owners, Entra identities, tools and policy settings, with clear limits on what the demo proves.
Endpoint security Tutorials and Guides by Microsoft MVP Jannik Reinhard — Microsoft Defender for Endpoint, attack surface reduction, BitLocker, FileVault, privilege management and zero-trust device hardening.Endpoint security, Microsoft Defender configuration, and zero-trust device hardening. Every article in this category focuses on practical, configurable controls that reduce attack surface on Windows, macOS and Linux endpoints managed through Microsoft Intune.
You’ll find deep-dive guides on Microsoft Defender for Endpoint baselines, attack surface reduction (ASR) rules, account protection policies, BitLocker and FileVault deployment, privilege management with Intune Suite, restricting login to dedicated users, and integrating Defender signals into Logic Apps and SIEM pipelines. Each post is opinionated about defaults — what to turn on day one, what to phase in, and what trade-offs each control creates for the user experience.
As a dual Microsoft MVP for Security (Intune) and Microsoft Foundry, my work spans both the security-product surface and the AI agents that increasingly automate triage and remediation. Articles in this category lean on that real-world perspective: not just “how to enable a setting”, but “how this fits in your overall security posture and what attackers will try next”.
Supported byAdvertisement
Watch my Microsoft Agent 365 portal overview: inventory, owners, Entra identities, tools and policy settings, with clear limits on what the demo proves.
MCP tool production needs more than a working connection. I explain five security gates for identity, scope, limits, approval and evidence.
Read article: Five Gates Before an MCP Tool Reaches Production
An MCP server is easy to connect, but an enterprise still needs identity, limits, monitoring and a clear tool boundary. In this blog post I use a live Azure API Management instance to show how I…
Read article: Azure API Management MCP: The Control Plane for Agent Tools
Local AI agents can work with files, tools and user permissions directly on Windows devices. In this blog post I show how the new Intune Local AI Agent inventory helps you discover OpenClaw first, investigate the…
Read article: Detect and Block Shadow AI with Intune: OpenClaw in Practice
Watch my Microsoft Foundry guardrails walkthrough: review filters, assignments and compliance options, then distinguish configuration from tested protection.
Read article: Microsoft Foundry Guardrails: Portal Walkthrough and Tests
This is the first episode of my new unboxing series with Admin By Request. I explain what their Endpoint Privilege Management solution is, how temporary admin rights and per-process elevation work, and why the Frankfurt data…
Read article: Admin By Request Unboxed: My Full EPM Walkthrough
AI agents like Claude Code and Copilot CLI run with your privileges. See how AI agent runtime protection in Defender for Endpoint blocks prompt injection.
Read article: Protect AI Agents with Microsoft Defender for Endpoint
Supported byAdvertisement