Customer Details
Customer: Center for Educational Technology.
Products and Services: Microsoft Intune, Microsoft Entra ID, Microsoft Defender for Endpoint, Microsoft 365.
Industry: Education.
Organization Size: Medium (500–1,000 employees).
Country: Israel.
Story Details
In a strategic move to enhance security, streamline operations, and embrace modern cloud technologies, CET partnered with OnCloud to transition from a hybrid IT environment to a cloud-only infrastructure utilizing Microsoft 365.
Challenges
CET faced several challenges with its existing hybrid IT setup:
- Complex Device Management: Managing devices through both System Center Configuration Manager (SCCM) and Microsoft Intune led to inefficiencies and increased administrative overhead.
- Outdated Security Policies: Redundant and unnecessary Group Policy Objects (GPOs) compromised security and compliance.
- Inefficient Authentication Methods: Traditional password-based authentication posed security risks and hindered user experience.
- Dependence on On-Premises Infrastructure: Reliance on domain controllers limited scalability and flexibility.
Solution
To address these challenges, Matach implemented a comprehensive plan leveraging Microsoft 365 services:
- Unified Device Management: Transitioned to exclusive use of Microsoft Intune for device management, eliminating SCCM dependencies.
Security Enhancements:
- Cleaned up unnecessary GPOs.
- Established security baselines for Windows, Microsoft Defender for Endpoint, and Edge.
- Deployed BitLocker policies for disk encryption.
Compliance and Access Control:
- Implemented compliance policies for managed devices.
- Set up Conditional Access policies, including Multi-Factor Authentication (MFA), compliance requirements, session controls, risk assessments, and security information registration.
- Deployed Scappman for automated application updates.
User Authentication Improvements:
- Enabled Self-Service Password Reset (SSPR) with password writeback.
- Introduced Windows Hello for Business with Kerberos trust for hybrid environments.
- Reduced the number of global administrators to approximately five, incorporating break-glass accounts and automation.
- Implemented phishing-resistant MFA for administrators and passwordless authentication for new users.
- Infrastructure Modernization: Decommissioned on-premises domain controllers, transitioning to a cloud-only structure.
Benefits
The transition yielded significant benefits:
- Enhanced Security: Strengthened security posture through modern authentication methods and streamlined policies.
- Operational Efficiency: Simplified device management and reduced administrative overhead.
- Improved User Experience: Enabled seamless and secure access for users, enhancing productivity.
- Scalability and Flexibility: Achieved a scalable and flexible IT environment aligned with organizational growth and technological advancements.
Conclusion
CET successful transition to a cloud-only environment with Microsoft 365 demonstrates the transformative impact of adopting modern cloud technologies. This strategic move not only addressed existing challenges but also positioned the organization for future growth and innovation in the educational technology sector.