Enabling the Modern Workstyle with Windows 10 & Azure Active Directory Venkatesh Gopalakrishnan 2016 Redmond Summit | Identity Without Boundaries May 25,

Slides:



Advertisements
Similar presentations
People Centric IT Unified Device Management with SCCM + Windows Intune
Advertisements

Mobile Device Management Intune-Configmanager CHANDAN BHARTI PREMIER FIELD ENGINEER-MICROSOFT.
Azure AD & Office Logon with Username / Password 2. MFA challenge 3. Reply to MFA challenge -1-way or 2-way SMS -Phone call -Mobile Application.
Digital DNA Server Login People ®. Login People ˃ IT security vendor ˃ Patented Digital DNA ® technology innovation Digital DNA Server Multi-factor Authentication.
Introducing Windows Server 2012 R2 Work Folders:
SharePoint Server Exchange Server CORPORATE NETWORK Mobile devices PCs Browsers INTERNET DMZ Active Directory Policies Filter EAS Filter web access.
Script Kiddies; CybercrimeCyber-espionage; Cyber-warfare CybercriminalsState sponsored actions; Unlimited resources Attacks on fortune 500All sectors.
Microsoft Ignite /16/2017 4:55 PM
Data Devices People 6.5B Wireless connections today >42% of global population owns smartphone by end of 2015 >50% User will go to tablet or smartphone.
4/17/2017 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
Active Directory Integration with Microsoft Office 365
Windows Server 2012 R2 Capabilities for BYOD Scenario Yuri Diogenes Senior Knowledge Engineer Data Center, Devices & Enterprise Client – CSI Team’s Page:
Cloud app Cloud app Cloud app Separate username/password sign-in Manual or semi-automated provisioning Active Directory App Separate username/password.
Empower Enterprise Mobility Jasbir Gill Azure Mobility.
Christopher Chapman | MCT Content PM, Microsoft Learning, PDG Planning, Microsoft.
Empowering people-centric IT Unified device management Access and information protection Desktop Virtualization Hybrid Identity.
Microsoft Ignite /25/2017 9:57 AM
Access and Information Protection Product Overview Andrew McMurray Technical Evangelist – Windows
Are cybersecurity threats keeping you up at night? Your people go everywhere with devices, do the apps and data they need go with them? Can you adopt.
Get identities to the cloud Mix on-premises and cloud identity for improved PC, mobile, and web productivity Cloud identities help you run your business.
Access resources in a federation partner organization.
Configuration Manager and InTune Gemeinsam oder einsam?
Microsoft Virtual Academy Preparing for the Windows 8.1 MCSA Module 5: Managing Devices & Resource Access.
User and Device Management
Pat Fetty – Principal PM Manager Securing your mobile assets with Microsoft Intune WIN33 1.
Craig Pringle & Derek Moir
Identities and Azure AD Premium
Slavko Kukrika MVP Connect Windows 10 to the Cloud – Cloud Join.
Why EMS? What benefit does EMS provide O365 customers Manage Mobile Productivity Increase IT ProductivitySimplify app delivery and deployment LOB Apps.
Agenda  Microsoft Directory Synchronization Tool  Active Directory Federation Server  ADFS Proxy  Hybrid Features – LAB.
Tomaž Čebul Principal Consultant Microsoft Bring Your Own Device, kaj pa je to?
Go mobile. Stay in control. Craig Morris EMPOWER ENTERPRISE MOBILITY.
How to build your own EMS Sandbox Frank C. Drewes III 2016 Redmond Summit | Identity Without Boundaries 24 May 2016 Senior Architect
One Foot in the Cloud, Another On-Premises Ross Adams 2016 Redmond Summit | Identity Without Boundaries May 25 th 2016 Azure AD
EMS in action Hugh Simpson-Wells and Mark Riley 2016 Redmond Summit | Identity Without Boundaries
SaaS apps.
ADFS - Does it Still have a Place? Fitting into the EMS puzzle Frank C. Drewes III 2016 Redmond Summit | Identity.
Azure Active Directory Uday Hegde 2016 Redmond Summit | Identity Without Boundaries May 26, 2016 Group Program Manager, Azure AD
of employees use personal devices for work purposes.* of employees that typically work on employer premises, also frequently work away from their desks.***
Managing Devices in the Enterprise: From EMS zero to Hero in only 60 minutes Ken Goossens Herman Arnedo Mahr.
Protect your data Enable your users Desktop Virtualization Information protection Mobile device & application management Identity and Access Management.
Today’s challenges Data Users Apps Devices
Microsoft Passport and Windows Hello Developer’s Guide to Windows 10 Build SDK Update Andy Wigley
Microsoft Ignite /17/ :48 AM BRK3330
Conduct a successful pilot deployment of Microsoft Intune
SaaS Application Deep Dive
Azure AD for the client management guy (or gal!)
6/25/ :13 PM BRK1076 Make Windows devices more secure by taking them out of your existing infrastructure Chris Rhodes & Andrew Bettany MCTs & MVPs.
The power of common identity across any cloud
Everything Windows User Group Denmark 20 January 2016
9/4/2018 6:45 PM Secure your Office 365 environment with best practices recommended for political campaigns Ethan Chumley Campaign Technology Advisor Civic.
Everything Windows User Group Meeting, May 2016
9/13/2018 4:54 PM BRK How to get Office 365 to the next level with Azure Active Directory Premium Brjann Brekkan Program Manager Lead – Customer.
The Road to Modern Management
Microsoft Ignite /20/2018 2:21 PM
Access and Information Protection Product Overview October 2013
Getting Started.
Microsoft Ignite NZ October 2016 SKYCITY, Auckland
SharePoint Online Hybrid – Configure Outbound Search
Getting Started.
TechEd /7/ :16 AM © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered.
4/3/2019 3:20 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS.
System Center Marketing
TechEd /6/ :24 PM © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks.
PCIT-B314 BYOD and WS2012R2 Adam Hall
SCCM in hybrid world Predrag Jelesijević Microsoft 7/6/ :17 AM
Microsoft 365 Business Technical Fundamentals Series
TechEd /18/ :51 PM © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered.
11/25/ :29 AM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN.
Microsoft Virtual Academy
Presentation transcript:

Enabling the Modern Workstyle with Windows 10 & Azure Active Directory Venkatesh Gopalakrishnan 2016 Redmond Summit | Identity Without Boundaries May 25, 2016 Principal PM Manager

1. What is the modern workstyle? 2. How Windows 10 and Azure AD help end users and IT embrace the modern workstyle 3. Security, Access Control and Data Protection in the modern IT environment Topics

The Modern Workstyle

What is the modern workstyle?

Current IT reality …is also an opportunity to enable the modern workstyle

Windows 10 & Azure AD enable the modern workstyle

Azure Active Directory Join Register Windows 10 devices directly to your company’s Azure Active Directory in the cloud Azure AD Joined Devices Windows Server Domain Joined Devices Easy set up  Self-service setup by end users via OOBE, Settings or within apps  Automatic enrollment into management – no extra steps required SSO to org apps and resources  SSO to Office 365 and 1,000’s of enterprise apps, websites and resources.  Install apps from the Windows Store for Business Familiar Enterprise Services  Roaming Settings, Windows Backup/Restore, Store access, etc.  Compliant, enterprise-class data storage and backend services Support for hybrid environments  Domain-joined and Azure AD-joined devices coexist seamlessly when on- premises AD is connected with Azure AD Security  Supports Windows Hello – passwords are never used

A typical use case 1.Employees set up devices by themselves 2.MDM deploys apps, certificates and policies to the devices 3.Employees use Windows Hello to unlock 4.Seamlessly access company mail, documents and LOB apps from anywhere

Demo

Azure AD Joined Devices Domain Joined Devices Personal Devices (BYOD) Device configurations

Security, Access Control and Protection

Windows Hello A more personal, more secure way to unlock your Windows 10 devices. Active Directory Azure Active Directory Microsoft Account Other IDP’s User 1 Create Account or Proves Identity Create and trust my unique key or Authenticate me by validating this signed request 2 Windows 10 3 Intranet Resource 4 4 Here is your authentication token I trust tokens from IDP So do I Intranet Resource User Unlocks Windows identity container w/ PIN or Bio IDP

Conditional Access Control User attributes User identity Group memberships Auth strength (MFA) Application Authorized application Type (web, native) Business sensitivity Other Location (network) Risk profile Conditional access control in Active Directory Devices Known to organization MDM Managed (Intune) Compliant with policies Not lost/stolen

Bitlocker RMS Enterprise Data Protection Device Protection

Summary: Enabling the modern workstyle

Move productivity to the cloud Enhance security Critical elements Enable protection

2016 Redmond Summit Sponsors

Thank you! Venkatesh Gopalakrishnan