S6E14 - Securing M365 with ScubaGear: A Deep Dive into CISA’s Assessment Tool

S6E14 - Securing M365 with ScubaGear: A Deep Dive into CISA’s Assessment Tool

In this episode, we dive deep into ScubaGear, an open-source tool developed by the Cybersecurity and Infrastructure Security Agency (CISA) as part of the Secure Cloud Business Applications (SCuBA) project. Designed to assess Microsoft 365 (M365) tenant configurations, ScubaGear helps organizations align with CISA’s Secure Configuration Baselines (SCBs) to prevent costly misconfigurations. From setup to real-world applications, we unpack how ScubaGear strengthens M365 security and share practical tips for IT admins and security teams. What You’ll Learn:

  • Why ScubaGear Matters: Learn how ScubaGear addresses the growing threat of cloud misconfigurations, which accounted for 30% of cloud attacks in early 2024. We discuss its origins in CISA’s SCuBA project, and its value for US federal agencies, private organizations, and critical infrastructure.
  • How ScubaGear Works: A technical breakdown of ScubaGear’s PowerShell-based workflow, using Microsoft Graph APIs and Open Policy Agent (OPA) to compare tenant settings against SCBs. We cover setup requirements.
  • Common Misconfigurations: Examples like disabled MFA or weak DLP policies, and how ScubaGear’s HTML, JSON, and CSV reports provide actionable remediation steps.
  • Best Practices: Tips for integrating ScubaGear into security workflows, including regular scans, policy customization, and combining with tools like Microsoft Secure Score.
  • Real-World Insights: Sam shares experiences from consulting.

What did you think of this episode? Give us some feedback via our contact form, Or leave us a voice message in the bottom right corner of our site.

Read transcript

Episoder(155)

S7E6 - ITDR - A must in all organisations

S7E6 - ITDR - A must in all organisations

Alan and Sam discuss the importance of monitoring identities across all systems. Alan goes through wat ITDR is, why it is important and the benefit. Here are a few areas we covered:Why is it important...

20 Mar 40min

S7E5 - February News

S7E5 - February News

This week, Alan and Sam talk about new features and services that have gone into Public Preview or General Available status in the last month. We dive into a couple of these updates that peaked our in...

13 Mar 47min

S7E4 - Unified Tenant Configuration Management APIs

S7E4 - Unified Tenant Configuration Management APIs

Alan and Sam dive into configuration drift with M365 and assessment against security baselines. Here are a few things we covered:What is configuration drift, and why a security baseline is important.M...

27 Feb 56min

S7E03 - January News

S7E03 - January News

This week, Alan and Sam talk about new features and services that have gone into Public Preview or General Available status in the last month. We dive into a couple of these updates that peaked our in...

13 Feb 56min

S7E02 - Entra Account Recovery - Next Level Self Service

S7E02 - Entra Account Recovery - Next Level Self Service

Alan and Sam dive into the next level of self-service for Entra accounts. Alan takes us through what Entra Account Recovery is and how it is different to Self-Service Password Reset. Here are a few th...

30 Jan 49min

S7E01 - December News

S7E01 - December News

This week, Alan and Sam Introduce season 7 and talk about new features and services that have gone into Public Preview or General Available status in the last month. We dive into a couple of these upd...

16 Jan 54min

S6E30 - Season 6 Finale!

S6E30 - Season 6 Finale!

In this episode, we wrap up the season, where we explore our favorite episodes of the season. We also talk about the what happened in 2025, and how the podcast has grown in terms of listenership and e...

12 Des 20251h 4min

S6E29 - Ignite 2025 Recap - San Fran and what's hot off the press

S6E29 - Ignite 2025 Recap - San Fran and what's hot off the press

This week, Alan and Sam talk about last weeks Microsoft Ignite event and the announcements that came out of it. Alan dives into the in-person experience in San Francisco. They dive into a couple of th...

28 Nov 20251h 3min

Populært innen Teknologi

lydartikler-fra-aftenposten
romkapsel
teknisk-sett
energi-og-klima
nasjonal-sikkerhetsmyndighet-nsm
tomprat-med-gunnar-tjomlid
shifter
smart-forklart
rss-ki-praten
rss-impressions-2
elektropodden
hans-petter-og-co
pedagogisk-intelligens
rss-ai-forklart
fornybaren
rss-polypod
rss-alt-som-gar-pa-strom
rss-for-alarmen-gar
rss-bits-and-bytes-for-advokater
rss-startup