<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Conditional Access on Secure Techies</title><link>https://securetechie.com/tags/conditional-access/</link><description>Recent content in Conditional Access on Secure Techies</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Sat, 19 Sep 2026 00:00:00 -0700</lastBuildDate><atom:link href="https://securetechie.com/tags/conditional-access/index.xml" rel="self" type="application/rss+xml"/><item><title>Conditional Access Without Locking Agents Out</title><link>https://securetechie.com/case-studies/conditional-access-without-locking-agents-out/</link><pubDate>Sat, 19 Sep 2026 00:00:00 -0700</pubDate><guid>https://securetechie.com/case-studies/conditional-access-without-locking-agents-out/</guid><description>An independent brokerage in Sherman Oaks asked Secure Techies for Conditional Access after an insurer asked how MFA was enforced, not whether it was licensed. We ran policies in report-only, excluded a break-glass account, then enforced MFA and blocked legacy auth without locking agents out of mail on listing day. This was not a FIDO rollout for every phone, and not the nonprofit MFA study.</description></item><item><title>Microsoft 365 MFA Without Locking Out the Board</title><link>https://securetechie.com/case-studies/microsoft-365-mfa-rollout/</link><pubDate>Sun, 16 Aug 2026 00:00:00 -0700</pubDate><guid>https://securetechie.com/case-studies/microsoft-365-mfa-rollout/</guid><description>A San Fernando Valley nonprofit asked Secure Techies to finish Microsoft 365 MFA after an insurer and a grant questionnaire asked who could sign in with only a password. Some users had Authenticator. Shared finance mailboxes did not. We inventoried accounts, enrolled people in place, put privileged and shared mailboxes on MFA, ran a grace window, then enforced. Nobody got a theater of phishing-resistant keys they were not ready to support.</description></item><item><title>Microsoft 365 Security Checklist: Harden Your Tenant in 2026</title><link>https://securetechie.com/blog/microsoft-365-security-checklist/</link><pubDate>Tue, 04 Aug 2026 00:00:00 -0700</pubDate><guid>https://securetechie.com/blog/microsoft-365-security-checklist/</guid><description>&lt;p&gt;Here&amp;rsquo;s the short version: &lt;strong&gt;a Microsoft 365 security checklist hardens the controls attackers actually abuse (identity, email, admin privilege, sharing, and recovery) so your tenant is harder to take over and faster to restore.&lt;/strong&gt; Default settings and a high Secure Score screenshot are not a security program.&lt;/p&gt;</description></item></channel></rss>