Monday 7/20
End user experience monitoring for Windows 365 and AVD (tools and best practices) (Nerdio)
That gap between "something is slow" and "here's the root cause" is what end user experience monitoring exists to close. The gap stays wide when your two cloud desktop paths live in separate consoles and share no common dashboard.
https://getnerdio.com/blog/end-user-experience-monitoring/
Why AI Governance Without Guardrails Is Theater (CrowdStrike)
As AI technology rapidly changes, AI governance becomes harder. We’re moving from users asking questions of chatbots to the deployment of full-fledged AI agents that can plan, take actions, call tools, and chain tasks together. These agents multiply both impact and risk.
https://www.crowdstrike.com/en-us/blog/why-ai-governance-without-guardrails-is-theater/
Tuesday 7/21
Safeguard 12.6: Use of Secure Network Management and Communication Protocols
https://www.gothamtg.com/blog/safeguard-126-use-of-secure-network-management-and-communication-protocols
Microsoft Passkey Provisioning API: Your Questions, Answered (HYPR)
Beginning September 1, 2026, Microsoft says it will begin rolling out passkeys as the default authentication experience in Microsoft Entra ID for users enabled for SMS or voice authentication. Microsoft has also announced that, beginning February 1, 2027, it will retire Microsoft-provided telecom delivery for SMS and voice authentication as a native Entra capability.
https://www.hypr.com/blog/microsoft-passkey-provisioning-api-your-questions-answered
Unifying Email Protection When Work and Attacks Both Move at Machine Speed (Proofpoint)
In the agentic era, security teams need to know what was detected, why it was detected, who was targeted, how the attack behaved, where it may have spread, and what to do next. The detection verdict is only the beginning. The real advantage comes from understanding what the verdict means and acting before the blast radius expands.
https://www.proofpoint.com/us/blog/threat-protection-unifying-email-protection
Wednesday 7/22
AI Doesn't Have a Model Problem. It Has a Data Problem.
Every AI use case worth doing is, from your security stack's point of view, indistinguishable from an exfiltration event.
https://www.gothamtg.com/blog/ai-doesnt-have-a-model-problem-it-has-a-data-problem
Attackers Go Where Agents Can't. Rubrik and CrowdStrike Follow Them. (Rubrik)
Rubrik protects workloads across the full range of enterprise infrastructure. Rubrik holds backup snapshots of the systems adversaries target, including all the ones that can't host an agent. Where CrowdStrike is already deployed, Rubrik provides a backstop.
https://www.rubrik.com/blog/technology/26/7/attackers-go-where-agents-cant-rubrik-and-crowdstrike-follow-them
Why IaC Coverage Belongs on Your Security Dashboard (Wiz)
Unlike other domains, coverage in the cloud isn't binary. A resource can be half-covered: deployed through a pipeline yet impossible to trace back to the code that defined it. The useful version of IaC coverage isn't a single percentage, it's a funnel.
https://www.wiz.io/blog/iac-coverage-security-dashboard
Thursday 7/23
Intune Enrollment Options for Personally Owned iOS Devices
For bring-your-own-device scenarios, the goal is not to take over the user's phone. Instead, Intune helps create a practical balance: users keep personal privacy and familiar device ownership, while IT can apply the right level of management to work apps, work data, and device access.
https://www.gothamtg.com/blog/intune-enrollment-options-for-personally-owned-ios-devices
PCI DSS 4.0.1 and identity security compliance (Delinea)
The future-dated requirements introduced with PCI DSS 4.0 became mandatory on March 31, 2025. This is no longer best practice. They are scored in every assessment, and a large share of them land squarely on identity: who can reach the cardholder data environment, how they authenticate and whether the accounts that run your payment systems are under control.
https://delinea.com/blog/pci-dss-4.0.1-and-identity-security-compliance-requirements
Inline Email Security and Microsoft 365: A Practical View of Mail Routing, Risk, and Prevention (Check Point)
The answer depends less on whether a solution is inline and more on how that inline architecture is implemented. Microsoft is right to call attention to mail flow designs that can introduce unnecessary complexity, create authentication challenges, duplicate processing, or disrupt the expected Microsoft 365 experience.
https://blog.checkpoint.com/email-security/inline-email-security-and-microsoft-365-a-practical-view-of-mail-routing-risk-and-prevention/
Friday 7/24
The AI governance gap executives can’t ignore — and why it’s about to get worse (Citrix)
Every team spinning up an agent is standing up MCP servers to give it hands and feet. Each server comes with its own endpoint, its own authentication scheme, its own rate limits (or none), and its own blind spot in your observability stack. Multiply that across a large enterprise and you have an ungoverned traffic layer sitting between your AI agents and your most sensitive systems.
https://www.citrix.com/blogs/2026/07/16/the-ai-governance-gap-executives-cant-ignore-and-why-its-about-to-get-worse/
Someone Became Admin This Week and No One Noticed (Abnormal)
An identity can gain admin-equivalent power from a single group change, and the review meant to catch it only ever looks at who's admin today.
https://abnormal.ai/blog/someone-became-admin-this-week-and-no-one-noticed