I wrote a new blog post based on my talk on #CloudBrew2025.
https://vasenius.fi/how-to-secure-ai-services-to-comply-with-eu-ai-act-in-azure/
| X | https://x.com/PetrusVasenius |
| https://www.linkedin.com/in/pvase/ | |
| Bluesky | https://bsky.app/profile/vasenius.fi |
| Homepage | https://vasenius.fi |
I wrote a new blog post based on my talk on #CloudBrew2025.
https://vasenius.fi/how-to-secure-ai-services-to-comply-with-eu-ai-act-in-azure/
The cyber threat landscape is shifting fast. New research from Unit 42 highlights attackers weaponizing open-source tools, abusing AI coding assistants, monetizing victim bandwidth and expanding global smishing campaigns, alongside continued nation-state espionage activity.
My latest blog breaks down the top findings from the last quarter and explains what security teams should focus on next.
Read the full analysis here: https://vasenius.fi/latest-unit-42-threat-intelligence-findings-from-last-quarter/
AI co-pilots like Microsoft Security Copilot are here to reshape how security operations centers handle scale, speed, and complexity. Used well, they cut time-to-meaning, reduce analyst fatigue, and surface higher-value investigations for humans to resolve. Used poorly, they can amplify bias, create automation blind spots, and erode trust.
My blog post will enlighten the topic with some concrete tips.
https://vasenius.fi/empowering-soc-analysts-human-ai-co-teaming-strategies-with-security-copilot/
#SecurityOperationsCenter #SecurityCopilot #MicrosoftSecurity
I finally finished my July's blog post! 💪🏻 Cut down investigation time and surface real insider threats faster: automate your Insider Risk Management workflow in Microsoft Purview with policy templates, adaptive protection, and Power Automate.
https://vasenius.fi/how-to-automate-insider-risk-management-using-microsoft-purview-risk-policies/
Learn how to turn insider risk detection into consistent, scalable action by automating workflows with Microsoft Purview risk policies, adaptive protection, and Power Automate - complete with playbooks, real-world scenario, and operational guidance.
Lately, I’ve been working with Data Management Landing Zones (DMLZ) and have compiled a set of practical insights and deployment tips for successful implementation. When implemented effectively, the DMLZ provides a governed, cost-transparent, and audit-ready foundation that enables data product teams to operate efficiently and securely.
https://vasenius.fi/getting-started-with-azure-data-management-landing-zone/
I wrote a brief Playbook, how to get started with securing the Azure AI Service's in your environment. Azure AI services provides multiple layers of security that you should consider when implementing a solution, which I present in this blog post:
https://vasenius.fi/example-playbook-to-secure-your-azure-ai-services/
Are you familiar with #MicrosoftPurview's DSPM for AI solution and what benefits it can bring to you and your organization? If not, feel free to check out the blog post I created about the solution and how it can be used to gather insights from AI usage across your environment.
https://vasenius.fi/overview-to-microsoft-purview-data-security-posture-management-dspm-for-ai/