Security & Identity
Identity is the new perimeter. Treated as such.
Entra ID and IAM, MFA, conditional access, Defender and endpoint protection, applied under Zero Trust principles and reviewed periodically.
When Rosit gets involved
Situations that usually drive the project
Recurring scenarios in companies running corporate environments that need a technical decision, not a stopgap.
01
Access with no context control
A valid credential opens everything, from anywhere and any device, with no risk evaluation.
02
Too many privileged accounts
Permanent admins, shared accounts and inherited permissions nobody reviews.
03
Endpoint as a blind spot
Basic antivirus with no central telemetry, no coordinated response and no incident visibility.
04
Client and audit requirements
Security questionnaires and contractual requirements the current environment can't answer.
Capabilities
What we deliver in this area
01
Entra ID and IAM
Identity model, synchronization, groups, account lifecycle and controlled privileged access.
02
MFA and conditional access
Policies by risk, location, device and application — with documented and reviewed exceptions.
03
Microsoft Defender
Endpoint, email, identity and cloud application protection, with centralized alerting.
04
Data protection
Classification, labeling and leak prevention applied to the content that actually matters.
05
Posture and hardening
Configuration review, baselines, exposed surface and risk-prioritized remediation.
06
Zero Trust applied
Explicit verification, least privilege and assume-breach translated into concrete configuration.
Execution
How the work is conducted
Every stage has a deliverable, an owner and a completion criterion agreed before it starts.
- 01
Assessment
Review of the current posture: identity, endpoints, email and data.
- 02
Prioritization
Plan by risk and operational impact, with defined windows.
- 03
Implementation
Gradual rollout of policies, with a pilot before full deployment.
- 04
Review
Ongoing alert monitoring, adjustments and periodic reassessment.
Relevant technologies
- Microsoft Entra ID
- Conditional Access
- MFA
- Defender for Endpoint
- Defender for Office 365
- Defender for Identity
- Purview
- Intune
Project and operation
The project ends. The environment keeps running.
Security isn't a one-time delivery. We monitor alerts, review policies and adjust the posture as the environment and threats change.
Want to understand your current security posture?
We run a technical assessment of identity, endpoints and email and present a risk-prioritized plan.