Bailey Bercik

257 Followers
51 Following
15 Posts
Senior Threat Intelligence Analyst at Microsoft | SANS CloudSecNext Summit Co-Chair

I’m excited to co-chair the SANS CloudSecNext Summit this year. Our Call for Presentations just opened, and we’re looking forward to hearing your talks October 2-3 in Denver, Colorado!

https://www.sans.org/cyber-security-training-events/cloudsecnext-summit-2025/

CloudSecNext Summit & Training 2025 - Cyber security training courses | SANS Institute

The CloudSecNext Summit & Training brings together real-world user experiences and case studies, and practical, technical training oriented on specific approaches and skills for building and maintaining a secure cloud infrastructure.

How has least privilege changed in 2025?

@baileybercik talks on RunAs Radio at https://runasradio.com/Shows/Show/966 about Entra Permissions Management and more to help you implement least privilege rules in your systems!

Least Privilege in 2025 with Bailey Bercik

How is least privilege different in 2025? Richard talks to Bailey Bercik about the ongoing efforts to minimize users, administrators, and applications' privileges in 2025. Bailey talks about the power of Entra Permissions Management to help...

RunAsRadio

It was my pleasure to share the stage with @baileybercik at @sansinstitute where we were able to present on the importance of governance controls in the cloud & AI era.

https://www.youtube.com/watch?v=wIGevut8o7A

#microsoft #entra #identity #security

Best Practices for How to Manage All Your Access from the Cloud

Driving your organization toward least privilege involves more than just monitoring administrative access. Access to business data can be as critical as admi...

YouTube
Yesterday, @_michaelepping shared best practices for deploying Platform SSO with #macOS devices on the recently revived #425Show. He shared out how it works under the hood as well as practice deployment and troubleshooting guidance. Great resource for Mac admins: https://youtu.be/bL0SvGVe474?si=Wx3XU9fG6xmTGq98
- YouTube

Enjoy the videos and music you love, upload original content, and share it all with friends, family, and the world on YouTube.

Looking forward to presenting on governance best practices at SANS #CloudSecNextSummit with @JefTek on September 30th. We’ll be there in person, but the event is fully accessible online. Check out the agenda and register here: sans.org/u/1uDe

Attending @BlueTeamCon in Chicago next month? @mzbat and I are once again running a full conference long cybersecurity resume and interview mentoring clinic at the venue. This is an opportunity for people at all career stages to get free, in-person 1:1 mentorship with a cybersecurity hiring authority to get fresh perspective on their career challenges.

The clinic only functions through the support of attendee volunteers. If you are a IC or people manager hiring authority and would like to volunteer, please sign up here: https://forms.gle/NusuwwZyKrNhzxwq6

If you are attending Blue Team Con and would like a little 1:1 mentoring time to work on your resume, interview skills, or career journey, sign up here: https://forms.gle/taUxWHa7vBN4L6b1A

#CybersecurityCareers @BurbSecPrime #ChicagoJobs #Cybersecurity #blueteamcon2024

Blue Team Con - Career Village Volunteer Registration

Thank you so much for volunteering to help in person at the Blue Team Con resume village September 7 & 8th. We greatly appreciate your assistance.These sessions matter a lot! This clinic matches people at all career levels with volunteers experienced in reviewing and hiring from cybersecurity resumes. To volunteer for this clinic, we would ask you you have a minimum of 2 years regular experience directly participating in the hiring process as a people manager, senior individual contributor, or as IT recruitment / HR professional. You can alternatively volunteer to help with logistics if you do not meet these criteria. We *do not* expect these resume review sessions to take the place of professional resume writing or editing. The 30 minute sessions are designed to identify content and flow issues from a technical perspective, which professional editors may not identify. They also provide a good opportunity for open career mentorship and interview performance suggestions. Basically, you're lending your experience to a person who needs a fresh perspective on their job search. Participants are instructed to bring a copy of their resume on paper or on a laptop or tablet. A sign in desk handles all logistics. Masks will be required to be correctly worn at all times in the village unless a participant is actively eating or drinking. At this time, the clinic is in person, for conference participants. Lunch will be provided for volunteers covering lunch shifts and/or extended volunteer shifts.

Google Docs
Earlier this year @baileybercik and I presented at SANS #Cloud #Security summit on what we've learned from the last 18 or so months of deploying #CIEM as part of that broader #CNAPP strategy. We focused mostly on #Microsoft #Entra Permissions Management. The talk is now posted, https://www.youtube.com/watch?v=q2pdf_8aorg. If you want to learn more about #CNAPP see this post, https://techcommunity.microsoft.com/t5/microsoft-defender-for-cloud/announcing-new-cnapp-capabilities-in-defender-for-cloud/ba-p/3981941. We also recently released an operations guide which has been very helpful for customers. Give it a read. https://learn.microsoft.com/en-us/entra/architecture/permissions-manage-ops-guide-intro. #InfoSec #Azure #AWS #GCP
Real World Lessons Learned from 18 months of CIEM implementations in the Enterprise

YouTube
#MicrosoftIdentityPGChat is back, y’all! We’re switching it up for 2023 and will be talking about Entra Permissions Management with the EPM team on LinkedIn Events tomorrow at 9am PST. We’re looking forward to the discussion!
https://www.linkedin.com/events/comechatwithusaboutentrapermiss7019056557569048577/
Come chat with us about Entra Permissions Management! | LinkedIn

Join members of Microsoft's identity division to talk about Entra Permissions Management, the unique opportunities to interact with the product group throughout the rest of January, and come prepared to ask us your questions!

Just got a copy of Michael Howard’s newest book! Kyle, @markmorow, and I were happy to help out where we could to make the book as good as it could be. Looking forward to reading the whole thing https://www.amazon.com/Designing-Developing-Solutions-Developer-Practices/dp/013790875X
That escalated quickly. Anyways, here is the Azure AD Security Operations Guide. https://learn.microsoft.com/en-us/azure/active-directory/fundamentals/security-operations-introduction. It also has links to Sentinel workbooks and Sigma rules.
Azure Active Directory security operations guide - Microsoft Entra

Learn to monitor, identify, and alert on security issues with accounts, applications, devices, and infrastructure in Azure Active Directory.