Security writing tends to split into two useless halves: vendor material that implies a product solves the problem, and threat reporting that describes attacks without telling you what to configure. The articles in this topic sit between them. Almost every business we work with is defended primarily by Microsoft technology they already own, so the practical question is not which product to buy but which controls are switched on, tuned and monitored.
Identity is the first theme. Most breaches we see begin with a credential, not an exploit — a phished password, a token replayed from a session that was never bound to a compliant device, a legacy authentication protocol nobody disabled. The material covers Microsoft Entra ID hardening, conditional access design that survives contact with real users, multi-factor authentication rollout including the Authenticator setup questions staff always ask, privileged access and break-glass accounts, and access reviews.
The second theme is detection and response. Microsoft Defender XDR spans email, endpoint, identity and cloud apps, and it is only as good as its configuration and the people watching it. We write about Defender for Office 365 policy tuning, endpoint detection and response, what a security operations centre does between alerts, and how SIEM aggregation changes an investigation. Incident response gets covered as a process — containment, evidence, notification obligations under the Notifiable Data Breaches scheme, and the post-incident work that stops a repeat.
The third theme is the Australian baseline. The ASD Essential Eight remains the framework most local boards, insurers and government buyers ask about, and much of it maps directly onto Microsoft 365 configuration. Our guides explain each mitigation strategy in tenant terms, the maturity levels, and a realistic order to implement them in. Security awareness training, phishing simulation and the human layer are treated as part of the control set rather than an afterthought.
All Cyber Security articles (41)
- Secure Managed IT: Security, Backup & Continuity | Mycelium 36514 Aug 2026
- Essential Eight Compliance Guide for Australian Business13 Aug 2026
- KnowBe4 Melbourne Security Awareness Training | Mycelium 36513 Aug 2026
- Managed Security Services Australia | Mycelium 36510 Aug 2026
- Microsoft Defender 365 Australia | Mycelium 36510 Aug 2026
- Zero Trust Security for Microsoft 365 Australia — Implementation Guide for SMBs | Mycelium 3654 Aug 2026
- Essential Eight Compliance for Melbourne Businesses — A Practical Guide for 20261 Aug 2026
- Managed Microsoft 365 for US Healthcare | Mycelium 36529 July 2026
- Managed Microsoft 365 for Real Estate | Mycelium 36529 July 2026
- Cyber Security Services for Melbourne Businesses — Essential Eight, SOC Monitoring, and Managed Security27 July 2026
- Essential Eight Assessment for Australian SMEs — What to Do Before the Framework Changes | Mycelium 36523 July 2026
- KnowBe4 Security Awareness Training Australia | Mycelium 36523 July 2026
- Critical Minerals Security: The Case for WA Miners14 July 2026
- Essential Eight Retired: What Aus SMBs Need | Mycelium 36511 July 2026
- Fortifying Your Modern Workplace: M365 Security & Support10 July 2026
- CMS Webshell Exploitation Campaign Targeting Aus | Mycelium 3659 July 2026
- AI and M365 for Aus Mining and Resources Companies | Mycelium 3655 July 2026
- Security Awareness Training and SOC Australia | Mycelium 3655 July 2026
- Cyber Security Act 2024 Australia Explained | Mycelium 3653 July 2026
- Set Up Google Authenticator in Australia | Mycelium 3653 July 2026
- Microsoft Authenticator for Business Australia | Mycelium 3653 July 2026
- Microsoft Cloud Service Provider Australia: Elevate Your Bus1 July 2026
- Microsoft 365 MSP Brisbane: Secure Modern Work with Zero Tru29 June 2026
- Implement Zero Trust for Microsoft 365 Security | Mycelium 3655 May 2026
- Why Managed IT for BC & Cybersecurity | Mycelium 36510 Mar 2026
- Fortify Your Business with Intune, Entra ID & Zero Trust8 Mar 2026
- Business Continuity with Azure & M365 Cyber | Mycelium 3652 Mar 2026
- Defender + Zero Trust for Azure Cybersecurity | Mycelium 36528 Feb 2026
- Why Zero Trust Security is Key for Microsoft 365 | Mycelium 36526 Feb 2026
- Resilient IT: Zero Trust, Cloud, & BC | Mycelium 36525 Feb 2026
- Azure Zero Trust Security & Why You Need It | Mycelium 36524 Feb 2026
- How Zero Trust Security Works with Microsoft 365 | Mycelium 36523 Feb 2026
- Why M365 Security Improves Your Efficiency | Mycelium 36518 Feb 2026
- How Microsoft 365 Security Protects Your Business | Mycelium 36517 Feb 2026
- M365 & Cybersecurity with Managed IT Services | Mycelium 36515 Feb 2026
- M365: Essential for Business Continuity Planning | Mycelium 36510 Feb 2026
- Managed IT Ensure Business Security & Continuity | Mycelium 3657 Feb 2026
- M365 Defender: Essential Cyber for Australia | Mycelium 3655 Feb 2026
- Managed IT Services: Azure & Zero Trust Security | Mycelium 36531 Jan 2026
- Intune, Cybersecurity & Managed IT: A Modern View | Mycelium 36530 Jan 2026
- Entra ID: How it Fortifies BC & Cybersecurity | Mycelium 36529 Jan 2026
