Microsoft September 2023 News: The new and exciting stuff

Microsoft hosted a live Surface and AI event on Thursday 21st September where they announced a lot of new and exciting features and products across its various platforms and services. In this blog post, I have tried to summarise the most notable ones and explain how they might benefit you and your organisation.

Disclaimer (and product plug) - Since this was an AI event in whole, I also want to state that other than some slight tweaks, this blog post was written by Bing Enterprise Chat - Microsoft Designer created the image. The whole thing took less that 10 minutes. 

Copilot: Your AI Assistant at Work and Beyond

Copilot is a new feature that uses artificial intelligence (AI) to help you with various tasks, such as drafting emails, summarizing texts, creating images, and more. You can access Copilot from Windows 11, Microsoft 365, Edge, and Bing, and chat with it in natural language. Copilot will understand your intent and provide relevant assistance based on the context and your data.

For example, you can ask Copilot to draft an email for you with a specific tone, or to generate a graphic art based on your description. You can also use Copilot to answer questions, troubleshoot your PC, control your settings, and access recommendations. Copilot is designed to save you time, reduce your cognitive load, and ignite your creativity.

Copilot will be generally available for enterprise customers on November 1st, and for a select group of consumers and small business customers as part of the Early Access Program (EAP). It will initially be limited to three hundred licenses and will cost $30 per user per month.

Windows 11: The Most Powerful and Personal Windows Ever

Windows 11 is the latest (and IMO best) version of the Microsoft’s desktop operating system that powers millions of devices around the world. Windows 11 offers a fresh and modern design, improved performance, and security, and a more personalised and connected experience. They announced the latest update coming next week (Sept 26th). Some of the new features in Windows 11 will include:

  • An updated Start menu that gives you quick access to your apps, documents, and settings.
  • An updated Taskbar that lets you easily switch between multiple instances of each app, hide the time and date, and end tasks with a right-click.
  • A new Dev Home that helps you set up your development environment by downloading apps, packages, or repositories, connecting to your developer accounts and tools, and accessing experimental features in WSL.
  • A new Dev Drive that provides a fast and secure storage volume for developers, with a file system that delivers both performance and security.
  • A new WinGet Configuration that simplifies the setup process for developers by reducing it to a single command.
  • New Gallery in File Explorer that makes it easy to access your photo collection across all your devices.
  • A new Snipping Tool that lets you record your screen with audio and mic support, copy and redact text from a screenshot, and edit your images with Paint.
  • A new Photos app that has new editing capabilities to achieve stylish background blur effects and makes it easier to find specific images backed up in OneDrive.
  • Updated Narrator that uses natural human voices in new languages, and lets you use voice access to log in to your PC and access other areas on the lock screen.
  • Refreshed Notepad app that automatically saves your session state, allowing you to close Notepad without any interrupting dialogs and then pick up where you left off when you return.
  • A new Instant Games feature that lets you play your favorite casual games directly from the Microsoft Store without the need to download and install them on your device.
  • Windows Copilot – Your Copilot for Windows.

Windows 11 also announced general availability of Windows 365 Boot and Windows 365 Switch, which allow you to log into your Windows 365 Cloud PC as the primary Windows experience on the device or easily switch between the Cloud PC and the local desktop. Windows 365 is a cloud PC service that lets you stream a full Windows experience from anywhere on any device and is fully managed from Intune.

This update will start rolling out as a free update on September 26th.

Surface: The Ultimate Devices for Work and Play

Surface is Microsoft’s line of devices that combine innovative design, powerful performance, and versatile functionality. Surface devices are built to work seamlessly with Windows 11 and Microsoft 365, offering the best productivity and creativity tools for work and play. I am a massive fan of Surface

The new / refreshed Surface devices include:

  • Surface Laptop Studio 2: The most powerful Surface ever built, with the latest Intel Core processors, NVIDIA Studio tools for creators, touchscreen display, and flexible design with three unique postures.
  • Surface Laptop Go 3: The lightest and most portable Surface Laptop, with touchscreen display, premium features like an incredible typing experience and a Fingerprint Power Button, and four stylish colours.
  • Surface Go 4: The baby Surface Pro is this time, available only for corporate and not consumer market (why??), the device is the same dimensions as before but is more repairable (the most repairable and sustainable device int he Surface Fleet). It ditches the 4GB RAM option (good) and brings a higher spec entry level processor. Pricing increases too which is a shame as is ditching consumer market. These are great for school kids.
  • Surface Hub 3: The ultimate collaboration device for teams, with a large interactive display that runs the Microsoft Teams Rooms experience. Surface Hub 3 pairs seamlessly with Teams-certified devices and supports Hub on day one. There was also an upgrade announced for Surface Hub 2S customers to upgrade to Surface Hub 3,

The new Surface devices are available for pre-ordering now.

Microsoft 365: The World’s Productivity Cloud

Microsoft 365 is a cloud-based subscription service that offers the best productivity apps for work and life. Microsoft 365 includes apps like Outlook, Word, Excel, PowerPoint, OneNote, OneDrive, Teams, Stream, Loop, Clipchamp, and more.

Microsoft 365 Copilot (which will be available from 1st November) is an add-on service at $30 per user per month and provides in-built AI-powered features and services that help you get more done across all your Office 365 apps and services – with support also coming to Microsoft Designer, Loop and Clipchamp and more.

Some of the new features and services in Microsoft 365 include:

  • Copilot in Outlook, Excel, Word, Loop, OneNote, Stream, and OneDrive: Copilot is integrated into various Microsoft 365 apps to provide AI assistance for different tasks. For example, you can use Copilot in Outlook to draft emails, in Excel to create charts, in Word to summarize documents, in Loop to generate content blocks, in OneNote to take notes, in Stream to transcribe videos, and in OneDrive to find files.
  • Generative Expand, Fill, and Erase in Microsoft Designer: These features let you manipulate images in creative ways, such as expanding the canvas, filling in missing areas, or erasing unwanted objects. Generative Erase is generally available now, and Generative Fill and Expand are coming soon.
  • Copilot Lab: Copilot Lab is a feature that lets you learn how to use Copilot effectively, share your favorite prompts with coworkers, and get inspired by other users. Copilot Lab will be accessible to all Microsoft 365 Copilot users once it’s generally available in November.
  • Mobile Application Management (MAM) for Windows: This feature allows employees to access organisational resources through Microsoft Edge from an unmanaged device, while giving IT the ability to control the conditions under which the resources can be accessed.

Bing and Edge: The Smartest Way to Search and Browse

Bing and Edge are Microsoft’s search engine and web browser that offer a fast, secure, and personalized way to search and browse the web. Bing and Edge use AI to provide relevant information and assistance based on your needs and preferences.

Some of the new features and improvements in Bing and Edge include:

  • DALL-E 3 in Bing Image Creator and Microsoft Designer integration: Bing Image Creator is a feature that lets you create images from text descriptions using AI. Bing Image Creator is now powered by DALL-E 3, which produces more realistic and detailed images. You can also access Bing Image Creator directly from Microsoft Designer for further editing.
  • Content Credentials: Content Credentials is a feature that uses cryptographic methods to add an invisible digital watermark to all AI-generated images in Bing. This helps you verify the origin and authenticity of the images. Content Credentials will be supported in Bing Image Creator, Microsoft Designer, and Paint soon.
  • Bing Chat Enterprise: Bing Chat Enterprise is a feature that lets you chat with Copilot from the Edge mobile app. You can also use multimodal visual search and Image Creator from Bing Chat Enterprise.
  • Copilot in Microsoft Shopping: Copilot in Microsoft Shopping is a feature that helps you find what you’re looking for more quickly. You can ask for information on an item, and Bing will ask additional questions to learn more. Then, Bing will use that information to provide more tailored recommendations. This feature will be available soon on both PC and mobile.
  • Personalised Answers: Personalised Answers is a feature that uses your chat history to inform your results. For example, if you’ve used Bing to track your favorite soccer team, next time you’re planning a trip it can proactively tell you if the team is playing in your destination city. Personalized Answers will begin to roll out soon.

Microsoft Advertising: The Best Way to Reach Your Customers

Microsoft Advertising is a platform that helps businesses connect with their customers across the web. Microsoft Advertising offers various solutions and tools to create effective and engaging ads that reach the right audience at the right time.

Some of the new features and improvements in Microsoft Advertising include:

  • Copilot in the Microsoft Advertising Platform: Copilot in the Microsoft Advertising Platform is a feature that simplifies and enhances every aspect of your experience with the platform. You can use Copilot to create campaigns, get content recommendations, optimize your performance, and more. This feature will be coming soon.
  • Compare & Decide Ads: Compare & Decide Ads are a new type of ads that pull relevant data of various products or services into a succinct table. This helps users easily evaluate different options based on their criteria. Compare & Decide Ads will be available for cars initially and will be brought to closed beta in early 2024.

Conclusion

These are just some of the highlights from the Microsoft September 2023 News. There are many more features and products that we didn’t cover here, but you can find them on the current web page context. I hope you are excited about these new developments, and I would love to hear what you are most excited about.

Microsoft announces Microsoft 365 Copilot availabilty

Today (Thursday 21st September) at a live event in New York, Microsoft announced their “revised” vision, release date and confirmation of pricing for Copilot – a “digital companion for your whole life”. Microsoft have said this this Copilot will create a single Copilot user experience across Bing, Edge, Microsoft 365, and Windows (plus more services that will come later). There’s also a new logo!

The Copilot experience promises to be consistent across all platforms and products – Microsoft 365, Bing, and Windows 11.

You can read the full blog from Microsoft here, but in summary here’s all the goodness that was announced.

Image (c) Microsoft

Microsoft Copilot in Windows

This has been in preview with Windows Insiders for a while and is essentially the new and revamped “cortana” [ok its far more than that].  Microsoft describe this as “a digital companion for your whole life” and will be nested into Windows 11 from September 26, 2023. 

  • Windows Copilot will be embedded into Windows 11 and will bring generative AI, search, and the ability to control apps and services within your desktop environment.
  • Currently in preview – will start rolling out starting from September 26 as part of 23H2.
  • Windows Copilot will also support third part app support like Spotify and Adobe.

Microsoft 365 Copilot

Described by Microsoft as “your AI assistant at work”, this was initially announced back in March as been in closed invite only Early Access Preview since June.

Microsoft 365 builds includes enterprise-grade security, privacy, compliance, and responsible AI to ensure all data processing happens inside your Microsoft 365 tenant—using which will be natively built into the Microsoft 365 apps and services everyone already uses like Teams, Excel, PowerPoint, and Word.

  • This will be available for enterprise customers for $30 per user per month
  • It requires a base license of Microsoft 365 E3, E5 or Business Standard or Premium
  • It will be available from November 1st to purchase
  • Includes the new Microsoft 365 Chat (formally Business Chat).
  • Rollout will be staggered – with release first to EA customers who were on the Early Access Programme and then will be available in phases there-after. Customers are advised to speak to their Microsoft Team for more information.

Note: Whilst this is great – IMO it is a little too soon (about 4 months sooner than most expected). Organisations do need to ensure their data lifecycle, governance, compliance, and security is in top shape to get the most from Copilot in Microsoft and there are strong recommendations about getting Copilot Ready – I have covered this here previously. This is an area I’m working a lot with organisation with at the moment – helping with use cases, data preparation, training, awareness, security, and governance.

Bing Chat Enterprise

This has been in public preview for a couple of months for Commercial and Education customers and is the same as Bing Chat for consumer (which is also free) but brings commercial data protection for AI

  • This is available free for Microsoft 365 E3 and E5, Business Standard, and Business Premium customers or at a cost of $5 as a standalone
  • Bing Chat Enterprise adds commercial data protection to Bing Chat, ensuring that sensitive business data is never seen by anyone, never stored, and never used to train the foundation models.
  • Support multimodal visual search and Image Creator and will also be available on Microsoft Edge and Bing mobile app

Oracle database services to be run from Microsoft Cloud

“Rival” tech giants Microsoft and Oracle have announced a deepening of their four-year cloud partnership in a move that will see Oracle physically locating their Exadata hardware in Microsoft’s data centers in order to speed up their apps and improve the customer experience.

Known as Oracle Database@Azure, this will result in Oracles’ customers having direct access to Oracle database services running on Oracle Cloud Infrastructure but deployed physically into Azure data centers. Microsoft and Oracle said this this will mean their shared customers will be able to operate, monitor and manage their Oracle services directly from the Azure Cloud dashboard, instead of having to run a separate Oracle dashboard.

It’s all about AI and Data

AI needs data and and Oracle is big in data!
The reason for the deeper integration between Oracle and Microsoft is to leverage more value in each others services – linking Microsoft’s middleware, AI and software and services with Oracle’s Autonomous Database in a way that will reduce the latency which usually occurs when accessing and acting on data from muti cloud environments.

This extended partnership aims to bring together Oracle’s hardware and software with all the advanced functionality Microsoft brings in their extensive and global cloud services.

“You have to have data to deploy AI, and that data might reside in an Oracle database. With this collaboration, we can bring Azure OpenAI to Oracle data.”

Sayta Nadella | Microsoft.

Accelerating Digital Transformation

Oracles’ Larry Ellison said that this is interesting for existing and new applications. He said that “Many customers have partially migrated to the cloud, but a lot of data is still on-prem… “

With further cooperation between Microsoft and Oracle, both claim this will help speed up and simplify the cloud migration and modernization process by making it easier for customers to get their data into the Cloud and to manage their Oracle and Microsoft cloud services from a single place.

Larry Ellison said at the end of the annoucement that hundreds of their customers are now using the interconnect between Microsoft and Oracle, but their customers still need faster, lower latency integration and this is what this will do. “We’ve made the network invisible and can now interconnect everything (Oracle) within Azure without realising you’re dealing with multiple stacks and multiple technologies”.


This level of partnership and collaboration demonstrates how technology and customer demand have driven more cooperation among software and cloud giants.

“Our expanded partnership with Oracle will make Microsoft Azure the only other cloud provider to run Oracle’s database services and help our customers unlock a new wave of cloud-powered innovation” .

Satya Nadella | Microsoft.

Read the full annoucement here.

Key takeaways from Cisco’s 2023 Network Trends Report

Cisco has just published their 2023 Global Networking Trends Report. This report covers some of the emerging networking trends in the multi-cloud world, and how they affect the IT operations and security of organisations. The report is twenty-one pages long and covers some interesting trends and observations from more than 2,500 IT leaders in 13 countries across North America, Latin America, Asia Pacific, and Western Europe (including the UK).

Image (c) Cisco

My key take aways from the report

  • Hybrid work and multi-cloud adoption are driving the need for innovative approaches to securely connect remote workers to corporate data and assets distributed across multi-cloud environments with a huge need (40% of respondents) to de-silo operations and bring together network and security controls and visibility.
  • Cisco says that “providing secure access to applications distributed across multiple cloud platforms” is the top challenge cited by 41% of networking professionals, followed by gaining end-to-end visibility into network performance and security (37%).
  • Growth and demand for SASE. SASE (Secure Access Service Edge) is a convergence architecture that delivers simplified and consistent security and performance for multi-cloud access and hybrid work. Cisco are a leading vendor in the SASE space which combines SD-WAN (Software-Defined Wide Area Network) and SSE (Security Service Edge) into a single, integrated SaaS security offering.
    • In the report, Cisco highlighted that 47% of respondents expect to connect their branches and remote clients using a SASE model by mid 2025, while 59% said that they will be prioritising centralising and consolidating cloud security over the same period.
  • Extending SD-WAN connectivity consistently across multiple clouds can automate cloud-agnostic connectivity and optimize the application experience. 53% of respondents prioritise integration with cloud service providers for this purpose5.
  • End-to-end network visibility and predictive analytics are essential for ensuring a consistent user experience across the complex digital service delivery chain, especially around SaaS apps with 51% of respondents prioritising end-to-end network telemetry and visibility. 47% of respondents said they will be prioritising predictive network analytics.
  • More organisations are multi-cloud than ever before with 92% of organisations reporting that they use more than one public cloud service (includes SaaS, IaaS and PaaS).

How Cisco Technology can help address these challenges

Cisco provide a comprehensive portfolio of products that can help organisations address many of the challenges of multi-cloud networking and security which fall into the SASE and SD-WAN categories. These include:

  • Cisco SD-WAN with edge security stack or SD-WAN with Umbrella Cloud Security (SASE) both leverage the Cisco Identity Service Engine’s Security Group Access Control Lists for segmentation policy management and enforcement across the WAN.
  • Cisco SD-WAN integrated with Cisco Umbrella SIG for a cloud-delivered SASE model that seamlessly secures access wherever users and applications reside.
  • Cisco Cloudlock, – Cisco’s cloud-native cloud access security broker (CASB) that helps secure your use of SaaS applications 
  • The Cisco SD-WAN and these SSE collaborations provide a range of SASE deployment options for our Partners and Managed Service Providers (MSPs), allowing them to utilize a mix of networking and cloud security solutions to offer multiple managed options to enterprises at various stages of their SASE journey 3.
  • Cisco Secure Access Service Edge (SASE) is a cloud-native platform that combines SD-WAN, SWG (Secure Web Gateway), ZTNA (Zero Trust Network Access), DNS-layer security, CASB (Cloud Access Security Broker).

The table below shows the key challenges discussed in the report and the corresponding solutions from Cisco that can help address them:

ChallengeSolution
Providing secure access to applications distributed across multiple cloudsSASE (Secure Access Service Edge), a convergence architecture that delivers simplified and consistent security and performance for multi-cloud access and hybrid work. SASE It combines SD-WAN (Software-Defined Wide Area Network) and SSE (Security Service Edge) within Cisco’s cloud platform
Gaining end-to-end visibility into network performance and securityCloud-based network detection and response solutions, such as Cisco Secure Cloud Analytics, which provides visibility and threat detection for an organisations’ network across public, private, and hybrid cloud environments.
Extending SD-WAN connectivity consistently across multiple cloudsSD-WAN multi-cloud integrations, which allow networking and cloud teams to accelerate and automate extensions from enterprise sites to various cloud providers and other enterprise sites through Internet, interconnect, or colocation and cloud provider networks.
Siloed cloud, network, and security operationsCloud-centric operating model, which brings cloud operating model principles to the network and across the entire cloud/network IT stack, enabling more integrated workflows and better collaboration between network, security, and cloud operations.
Visibility into end user experience and performance of multiple Cloud SaaS appsCisco ThousandEyes provides real-time and historic view into the availability of thousands of different SaaS apps. It allows IT to monitor all employee’s user’s digital experience against software as a service and on-prem applications, regardless of where users are, through the essential elements of your SASE architecture. With ThousandEyes, organisations can gain back visibility and control over SaaS applications and ensure that they are performing optimally.
Table 1 – How Cisco technology addresses the challenges of securing and managing Networking and Security across multi-cloud environments,

Summary

Cloud is the new data center, Internet is the new network, and cloud offerings dominate applications. By gaining a view of global Internet health and the performance of top SaaS applications, IT teams can proactively detect and remediate major unexpected network or application issues affecting them as soon as they happen.

Based on the report, Cisco say that organisations can mitigate against many of the challenges discussed by adopting a cloud-centric operating model that brings cloud operating model principles to the network and across their entire cloud/network IT stack. This can enable more integrated workflows and better collaboration between network, security, and cloud operations.

Bing Chat Enterprise is now available “free” to businesses

Microsoft have unveiled another way for employers to empower their workforce with the announcement and preview availability of Bing Chat Enterprise by giving them better answers, greater efficiency, and new ways to be creative. Microsoft say it’s “Secure AI-powered chat for work.”

Bing Chat Enterprise | Microsoft

Secured with Microsoft Entra – Conditional Access

Bing Chat brings the power of generative AI to work, however, consumer Generative AI services like ChatGPT and Bing Chat (consumer), are helping people get answers, generate code, content and find things, but using these consumer servers for work, inadvertently puts corporate data at risk since it’s being shared with public AI services which use your data and your searches to train and teach their language models.

This is where Bing Chat Enterprise comes in! With Bing Chat Enterprise, organisations gets all the goodness of “AI-powered chat for work” with the commercial data protection organisations demand. “What goes in—and comes out—remains protected”, Microsoft say, which means employees get secure and managed access to better answers, greater efficiency, and new ways to be creative. User and business data is protected and will not leak outside the organisation, and chat data is not saved, viewed or accessible by Microsoft or used to train their language models.

What’s more, access to Microsoft Bing Chat Enterprise is secured and governed for seamless, managed access to using Microsoft Entra ID (Azure Active Directory) and organisations can also customise “Microsoft Search” to build out and map business answers within the Microsoft 365 Admin Centre.

How do you enable Bing Chat Enterprise?

To enable this, you need to ensure that Microsoft Search has not been disabled in your tenant and then go to https://aka.ms/TurnOnBCE as a Tenant Admin in Microsoft 365 and then enable the Bing Enterprise Chat feature as shown below ⬇️. The settings can take up to 4 hours to apply….

Enabling BCE in Microsoft 365 Admin Centre

How does Bing Chat Enterprise Work?

Video (C) Microsoft.

Privacy and Data Protection

Because workplace chats might contain sensitive data, Bing Chat Enterprise is designed with commercial data protection in place to keep organisational data safe.

Chat: When users ask questions in chat, it’s called a prompt. Those prompts can send generated searches (also known as queries) to Bing, and the resulting answer is called a response. User and business data is protected and won’t leak outside the organization. What goes in—and comes out—remains protected. Chat data isn’t saved, and Microsoft has no eyes-on access to it—no one sees it. And your data isn’t used to train the underlying models.

Search: Any searches generated by Bing Chat have workplace identities removed before they’re sent to Bing. The searches aren’t linked to users or business by Bing and any searches sent to Bing are under the terms of the Microsoft Services Agreement and covered by the privacy statement.

Organisational data: Bing Chat Enterprise doesn’t have access to organisational resources or content within Microsoft 365, such as Word documents or PowerPoint presentations. Only content provided in the chat by users is accessible to Bing Chat Enterprise.

Plugins: Importantly, Bing Chat Enterprise doesn’t have plugin support to prevent any commercial data from being sent to any external providers.

Chat history: Bing Chat Enterprise doesn’t retain chat prompts or responses. With Bing Chat history disabled for Bing Chat Enterprise users, no previous chats are maintained or available to users.

Azure Active Directory is now “Entra ID”

Today, Microsoft have announced the next milestone in their expanded vision for the unified secure access with some huge changes to their unified access and security offering Entra which has now become the brand name for all things identity and access management. Along with that is a name change to Azure Active Directory to Entra ID.

Is Azure AD discontinued?

No… This is a name change that is a result of the shift to a truly end to end multi cloud identity and access solution that spans beyond simply Microsoft 365 and Azure. The name change is designed to reflect it’s new and enhanced capabilities.

In the last 12 months, we saw an average of more than 4,000 password attacks per second, an almost threefold increase from the 1,287 attacks per second we saw the previous year.

Microsoft Security Intelligence Report

With this they have announced they are expanding their Microsoft Entra suite into the Security Service Edge (SSE) category with the launch of two new products.

Microsoft Security Service Edge
  • Microsoft Entra Internet Access and
  • Microsoft Entra Private Access.

Microsoft Entra Internet Access is an identity-centric Secure Web Gateway that protects access to internet, software as a service (SaaS), and Microsoft 365 apps and resources. It extends Conditional Access policies with network conditions to protect against malicious internet traffic and other threats from the open internet.

Microsoft Entra Private Access is an identity centric Zero Trust Network Access that secures access to private apps and resources. Designed to reduce operational complexity and cost by replacing legacy VPNs with simple yet granular security to ensure that any user can quickly and seamlessly connect to private apps across hybrid and multi cloud environments, private networks, and data centers from any device, from any location and from any network.

The goal and vision of Microsoft here is to help organisations secure access to any app or resource, from anywhere. Microsoft say in their security blog that the flexible work arrangements we have become accustomed too, along with continued increase cloud adoption continue to put strain on traditional and legacy corporate networks and network security approaches. Using VPNs to backhaul traffic to the legacy network security stack weakens security posture and damages the user experience while using siloed solutions and access policies leaves security gaps.

Both are now in preview….

The renaming of Azure Active Directory (Azure AD) to Microsoft Entra ID was also announced which Microsoft say has been done as Microsoft to simplify the product naming conventions and to unify their expanded product family. The change was made as Azure AD now supports multi-cloud meaning the name Azure AD no longer represented the breadth of its offerings.

Azure AD is now Entra ID

Personally not a fan of the name change even though their reasoning makes sense… Everyone knows what Azure AD is (or maybe that’s the problem… they think they do!)… Even Microsoft Teams wasn’t sure about it.!

😂

Microsoft say that that the currently capabilities and licensing plans, sign-in URLs, and APIs will remain unchanged, and all existing deployments, configurations, and integrations will continue to work as before.


You can read more about these recent changes and announcements here.

What is Microsoft fabric?

Today, fueled by the growth and demand of AI, data plays a crucial role in digital transformation and gaining a competitive Edge. Microsoft say that today’s data lakes can be fragmented, messy and complicated, making it hard for organisations to create, integrate, manage, and operate data lakes.

Microsoft, having recognised this, announced at Microsoft Build 2023, Microsoft Fabric, which provides an end-to-end platform that can bring together all the necessary data and analytics tools for an organisation. Fabric integrates Azure Data Factory, Azure Synapse Analytics, and Power BI into a single, seamless product, empowering data, and business professionals to unlock the full potential of their data.

What is the use of Microsoft Fabric?

Microsoft Fabric is made up of multiple subsystems, is “lake-centric”, open and extensible and is backed by a shared platform providing world class, enterprise grade, robust data security, governance, and compliance.

Microsoft Fabric – Image (c) Microsoft

Microsoft Fabric is essentially umbrella that sits over the top of Microsoft’s three main Data Analytics products – Power BI, Azure Data Factory, and Azure Synapse. It is a third generation of data platform.

First generation data platforms, such as SQL, SQL Data Warehouse and HDInsight, were inherently isolated data platforms built on traditional data products. Second generation data platforms such as Azure Synapse Analytics, went further by providing integrated platforms at a UX level were still disjointed at the data level. This third generation of data platforms like Microsoft Fabric, builds upon the Synapse “unification” approach but are focussed on enabling data-level interoperability and insights powered by Azure AI.

What are the benefits of using Microsoft Fabric?

The benefits of using Microsoft Fabric include reduced complexity, increased agility, improved security, and reduced costs through unified capacities. Powered by Microsoft AI, and natively integrated into Microsoft 365 applications such as Excel, PowerBI, Teams, and Dynamics 365. Fabric also supports thousands of connectors and deep APIs to allow organisations to better to connect almost any application, workflow, or data source.

Fabric announcement at Build 2023

Fabric has been designed to empower every business user by deeply integrating with Microsoft 365 applications and provides a rich set of connectors and APIs. Power BI, a core component of Fabric, is seamlessly integrated with popular applications like Excel, Teams, PowerPoint, and SharePoint and as such this deep integration allows users to discover and analyse data directly within these applications, driving a data culture and enabling better decision-making without the needs to switch applications or context.

How does it compare?

Fabric is a complete analytics platform that should eliminate the complexity and expense of integrating and administering multiple subsystems from different vendors. This means users get a truly unified experience and architecture, providing all the capabilities required for extracting insights from data and presenting them to business users. Moreover, Fabric offers role-specific experiences for various teams involved in the analytics process, ensuring a seamless workflow for data engineers, data scientists, analysts, and business users.

Fabric’s lake-centric and open approach is another key differentiator. Fabric includes a multi-cloud data lake called OneLake, which simplifies data management, integration, and operation. OneLake aims to eliminate data duplication and vendor lock-in by organising data into an intuitive hub. OneLake supports open data formats such as Delta and Parquet and allows organisations to work with a single copy of the data across all their Fabric workloads. This reduces cost, vendor lock in, complexity, and management overhead.

OneLake is the core of Fabric – a single storage account for an organisations multi-cloud data, whether that is inside of Azure, AWS or in a private DC. It is a single, logical “data lake” containing all an organisations’ Fabric workloads

Fabric is powered by AI, through Azure OpenAI Service, which is integrated at every layer, it will enable users to leverage the latest generative AI capabilities to quickly find insights across all their data. The upcoming Copilot feature will provide conversational dialogue that will let users quickly create dataflows, build models, and visualise the results using natural language queries and dialogue.

Availability and Pricing

Microsoft Fabric is currently available in preview, and organisations can sign up for a free trial to experience its capability.

Whilst this is in preview, pricing is not final, however, Microsoft say that to share content and collaborate in Microsoft Fabric, your organisation needs to have an organisational license and at least one individual license. A Microsoft Fabric subscription consists of tenants, capacities, and workspaces and can be organised in different ways to fit the needs of your organisational needs.

In short, an organisation needs capacity licenses and individual user licenses. The following information from Microsoft on Fabric Licensing which you can read more here.

Capacity is a dedicated set of resources reserved for exclusive use. It offers dependable, consistent performance for your content. Each capacity offers a selection of SKUs, and each SKU provides different resource tiers for memory and computing power

Individual licenses allow users to work in Microsoft Fabric.

  • Free – which allow users to create and share Fabric content in Microsoft Fabric so long as they have access to a Fabric Capacity (trial or paid).
  • Pro – A Pro license lets users share Power BI content with other users. Every organisation needs at least one Pro license if they intend to work with Power BI. If you’re purchasing a Microsoft Fabric license for your organisation, ensure you purchase at least one Pro license for your organisation.

Summary

In summary, Microsoft Fabric is comprehensive and integrated solution for data and analytics designed to maximise the AI era. Fabrics’ unified platform, lake-centric approach (OneLake), AI-powered features (including its own Copilot), seamless integration with Microsoft 365, and cost-saving benefits. Fabric aims to simplify, align, and streamline how organisations leverage the power of their data for insights and decision-making.

Evaluating the user experience and cases for Windows 365

Windows 365 is “Windows as a Service – a cloud-based service that automatically creates a new type of Windows virtual machine (Cloud PCs) for users. Each Cloud PC is assigned to an individual user and is their dedicated Windows device. Windows 365 provides the productivity, security, and collaboration benefits of Windows and Microsoft 365.”

Windows 365 is “similar” to a dedicated virtual desktop assignment in an Azure Virtual Desktop (AVD) environment, but is delivered as a SaaS service, providing a dedicated Cloud PC that users can remotely sign in to. It is also significantly simpler to set-up and manage that VDI infrastructure and offers a simpler commercial model.

You may ask yourself, “Why would I want to stream a computer to….well another computer?” Well – there is more to that – let’s look at Microsoft Marketing!

Fruit of the Loom – because one-size doesn’t fit all.

Just like your Microsoft 365 subscriptions, Windows 365 is available in both Business and Enterprise Versions.

  • Windows 365 Enterprise is designed for organisations who have already invested in Microsoft’s Endpoint Manager and using Endpoint Manager to deploy and manage their Windows 10/11 devices. This means that if you want to start using Windows 365 Enterprise you will also need a license that includes Intune.
  • Windows 365 Business is aimed at any size organisation with less than 300 users that need a Cloud PC. This is the same service – but a little more no-frills. Windows 365 Business does not support joining to a custom (Azure) Vnet, and also does not allow users to connect to on-premises resources (yet) – it is for Cloud Native users.

What is best for your organisation is based on a couple of things. If you want to have a quick lightly managed device for your end users or are just running a pilot – Windows 365 Business is a good place to start (it’s cheaper too). If you want to have more control, access on-prem resources and manage the Cloud PCs in the same way you manage your physical desktops then Windows 365 Enterprise is best. To see a full comparison, check out the docs from Microsoft.

Pricing

Windows 365 is available through three plans. Each plan is available as Windows 365 Enterprise or Windows 365 Business edition and each plan is of course priced differently ranging from £23.90 (RRP) for Business Basic all the way up to £56.20 for Enterprise Premium which has 16GB RAM/4 CPUs and 128GB Storage – you can also customise your own spec if you like!

  • Basic: For running light productivity tools, frontline tools and browser-based apps
  • Standard: For most users that need full range of productivity tools & line-of-business apps.
  • Premium: For users that need high-performance compute and heavier data processing.

I’ve been running on a mid-range Windows 365 Enterprise Cloud PC with 8GB RAM and 128GB Storage which was ample for all my day-to-day use

The User Experience – Test Flight

Windows 365 is available on a browser or dedicated app on Windows 10 and Windows 11 (and soon for iOS and Android). Regardless of how you access it, the user experience is an instant (well actually always on if you prefer), high-performance and reliable personal desktop experience (that’s also optimised for Microsoft Teams and your other Microsoft 365 apps) regardless of the apps you use. Once running fall screen, you totally forget is a Cloud PC – even things like touch and pen work if your physical device has those properties.

Windows 365 User Experience

Who’s is Windows 365 for?

Windows 365 isn’t designed for the consumer market. Instead, it’s for companies and enterprises that need to deploy a network over a large area. It’s also designed to allow businesses to utilize computing power as they see fit.

The question – will the Cloud PC “era” revolutionise business computing, after VDI has (and is in some areas) still heavily used from a security, agility, and remote purpose.

One view is that organisations will be able to offer more choice, support BYOD and no longer need to money spend on high-end physical compute devices, deal with logistics, repairs, maintenance, and lifecycle management. All employee’s need is an existing device / browser and a reliable internet connection access their Windows 365 Cloud PC. Since this is a subscription service (like other SaaS apps), they can avoid capital expenditure on laptops and desktops that may not get used 100 percent of the time, allowing them to be more efficient with the use of their resources.

On the other side, many organisations have been investing in modern mobile computing like the Surface Pro 9 5G for hybrid work with local apps that access cloud services like Microsoft Teams and Office 365 etc.

Common Scenarios? There are many scenarios in which neither model is best and as such we typically seem a blended approach (some with physical devices some with Cloud PCs or even both!!). Some may compliment their laptop and local app deployment model with technology like Cloud PC for accessing certain apps, apps that require additional security such as finance apps or development platforms. There will also be scenarios in which a Cloud PC only environment works. Let’s explore some of these below.

  • Long term remote or contract workers that may not need a corporate device because they choose to use their own or because providing them with one is cumbersome and logistically difficult. For example, you may have a new contractor working with you full time for a period of weeks or months. Windows 365 Cloud PCs can be be used to create a dedicated, cloud-based environment for contractors with access to a specific set of applications, access to specific parts of your network and have specific conditional access policies. With Cloud PC, IT can quickly enable this securely on their personal device, with whatever restrictions you choose, completely isolated from their personal desktop.
  • Remote Work / work from anywhere – For example, you might be working from home or the office on your laptop and leave to go home, into the office or just to grab a coffee at the local cafe. Instead of lugging your laptop along, you could simply take your tablet/iPad and access your Cloud PC where you left off. This is also a great use case when on holiday and you need to access your desktop.
  • For specialist apps or secure environment – You may have roles within the business such as finance, surveyors, 3D modellers, programmers etc, who work on petabytes of data on a dedicated high-end workstation. For these people working remotely may not be an option or accessing seamless is a security nightmare. With Windows 365, these employees could have access to the same PC power as their office workstation on a secure environment on their own home PC or tablet.
  • To get super-fast internet access if you have isolated remote workers. Another advantage of Windows 365 is superfast internet. How? Well, since your Cloud PC runs from the Microsoft Cloud, you are essentially streaming just the screen – all your local apps, file and processing are done in the Cloud, so when you download large data from Office 365 or any other source, it’s actually being downloaded to and from Microsoft’s data centres, which means super-fast internet. Microsoft demo’d a speed test which showed download speeds of up to 10 GBPS and upload speeds of up to 4 GBPS. In my tests I received the following.
  • New employees and for improving the break-fix experience – For employees that develop a fault with their corporate laptop or for new employees that don’t yet have a laptop, Windows 365 can be a great fit. Instead of getting them to use their own device as a BYOD device mode (which is not secure, breaches company security policy, could increase risk of breach, malware infestation etc), while they wait for a device or repair, use Windows 365 to quickly provision them a corporate Cloud PC which they can access from any device and that looks and feels exactly like the experience they are used to. This minimises impact to the user, keeps them productive, reducing urgency in repair or device procurement and can make for a super slick process for all involved.

Windows 365 from an Admin Experience

Now then, I am not an IT administrator anymore (I was once), but from the experience I have had setting up demo and test environments, it is so simple. Reason being, there is no setting up and maintaining complex VDI network and software infrastructure or different tools to use for management, since everything is managed through Intune – which you probably already use!

Using Intune, IT can manage both physical and virtual devices in one place making it simple to deploy software, add new Cloud PCs, upgrade Cloud PCs and of course, reset them, delete them and re-provisioning them. IT can also easily see how much computing power each Cloud PC or user is using and because they run in Azure (which is Carbon Neutral), you can technically deploy an entire fleet of Cloud PCs with zero CO2 overhead! Onboarding users is simple too, as you can simply make a user part of the right group (ensuring they also have a license) and a new Cloud PC is automatically provisioned which takes less than an hour. If you have autopilot enabled, then just like a physical device, the apps, configuration, settings etc are all applied as part of the build!

Since device specification is controlled by a license – should a user needs a more powerful device, IT can simply assign a different license – no waiting on a complex configuration change or buying a new physical PC (also good for the environment). The opposite also applies as a Cloud PC can be changed to a lower power device – saving compute power and licensing costs! Network performance monitoring is also built inside Windows 365 and because every Cloud PC runs from Microsoft’s Cloud they get laser-fast and direct connect connectivity to your Microsoft 365 app and Azure and being a Microsoft Cloud Service – Microsoft continuously monitor and run diagnostics on your Windows 365 environment – meaning if they detect an issue (either with your config or theirs), IT get notified!

Quick Intune Tour of Windows 365

Security First

One of the big appeals of Windows 365 is for remote work, temporary staff, new joiners, contractors, and students. Since the Cloud PC is…well in the cloud, it’s inherently more secure – protected by the same enterprise class security, identity, and compliance solutions from Microsoft that most admins will already use. Since Cloud PC is accessed via a secure browser or the Windows 365 app, it is isolated and insulated from most threats, and since is not directly installed on your device, it’s inherently more secure and can be configured to have no local access removing the risk from malware or ransomware from the underlying physical device.

Cloud PC also supports Azure AD Single Sign (and even password-less sign-on) on which gives a frictionless user experience without the need to use separate passwords – reducing the risk of credential theft in your environment which is especially useful when used with personal devices.

“By leveraging Windows 365 we can quickly and easily provide contactors with Windows 11 desktops which they can access on their own laptops meaning they are protected by our security and compliance policies. These Cloud PCs are instantly available from any device and any location, with little to no risk from the physical device they use to connect from”.

A customer quote!

Windows 365 vs Azure Virtual Desktop

How is Windows 365 different to Azure Virtual Desktop then?

Where Windows 365 Cloud PC is a dedicated desktop, managed by Microsoft as a SaaS app, Azure Virtual Desktop (AVD) is a Platform as a Service (PaaS) service which runs in Azure. With AVD, organisations have more full granular control over the environment build, and can configure a fully tailored, customised desktop and application virtualisation experience using either pooled or dedicated (one to one) desktops. Windows 365 is dedicated desktop and does not support multi session like AVD does. Billing of AVD is based on Azure usage whereas, Windows 365 is a single subscription per user and billed on a flat per user, per month fee (based on the spec of the machine).

Both Windows 365 and AVD make use of some overlapping technology, so they may seem similar but there are major differences.

How to Get Started with Windows 365

  1. Procure some licenses from your partner or Microsoft direct
  2. Configure Windows 365 from Intune
  3. Configure the on-premises network connection
  4. Create Security Group for Cloud PC users
  5. Assign a Cloud PC license to your users (or at group level)
  6. Create a Provisioning Policy
  7. Configure Hybrid Azure AD Join or Native Azure AD Join
  8. Create or assign a custom or stock image
  9. Enable and configure updates for Windows 365 (you can even use Autopatch)
  10. Assign users to the group created in step 5
  11. get the user to download the Windows 365 App or connect via a browser at

There’s a full guide on Microsoft Learn or speak to your partner to help you set up a PoC via FastTrack or as a paid PoC.

Cisco Thousand Eyes: End-to-End visibility into Cloud App performance.

Hybrid Work and the growth of SaaS makes troubleshooting end user experience so much harder.

ThousandEyes by Cisco is a digital end user experience monitoring solution that helps ensure your business SaaS apps are running at optimum performance wherever your employees or customers are.

ThousandEyes proactively monitors, alerts, and provides visual “route cause analysis” within minutes of a User Experience issue, regardless of if whether the issue is the LAN, WAN, Internet, “XaaS”, ISP, Collaboration Service (such as Teams, Webex or Zoom), or Cloud Provider. It can even determine whether the issue is caused by any third-party dependency such as Content Delivery network, Application, Connector, Secure Web Gateway, Identity Provider, or firewall.

What is ThousandEyes?

ThousandEyes enables organisations to rapidly increase the responsiveness of support teams and managed service providers by providing end-to-end visibility and performance monitoring across the ever-changing and distributed IT landscape wherever your applications, data, infrastructure, user, and devices are located by.
This helps organisations to:

  • Better support their hybrid workforce with near-real-time visibility of the employee’s experience.
  • Quickly identify and solve app experience issues by continually monitoring employee interactions with web and SaaS-based applications.
  • Gain end-to-end visibility from the user, across the network, WAN, and the Internet as well as to their cloud service providers and SaaS applications.

Cisco Thousand Eyes provides and end-to-end End user Experience Monitoring to help ensure that your employees / customers experience of your service or applications is “as expected” and helps proactively detect when there are issues which might impact this performance before users start complaining.

End to end visibility with Cisco ThousandEyes

Thousand Eyes provides end to end visibility and intelligence”. Its aim is to help IT provide the best possible employee and customer experience, whatever the application or service by comprehensively measuring and monitoring network performance end-to-end. This means that IT get complete visibility across the internet or WAN, edge, network, application, routing, and device layers to see exactly how and where the Internet and WAN connectivity is impacting employee or customer user experience.

Paying customers of ThousandEyes – and one of its’ killer features, is its’ ability to perform performance “snapshots” which provide clear-cut information – either on demand, or on a schedule. These can be shared with people outside your organisation and is pivotal to proving where the fault lies, therefore helping to help SaaS vendors troubleshoot their own infrastructure and it won’t be a surprise that many of the worlds’ largest SaaS providers are also Cisco Thousand Eye customers!

It does this by using “active monitoring” that utilises a software agent that simulates user activity and checks availability from multiple locations. Cisco leverage Thousand Eyes agents across much of their network equipment including wireless access points and switches (such as the Cisco Catalyst 9k), Cisco SDWAN solutions and SASE services, and is even incorporated into their Webex Meetings platform. There are also agents for desktop devices that can be deployed and what’s more you don’t need a Cisco network to use it. Thousand Eyes is proven to work well with leading SaaS and collaboration platforms such as Slack, Webex and Microsoft Teams.

Cisco Thousand Eyes – Image (c) Cisco.

The Synthetic testing constantly simulates user interaction with SaaS and Web applications, represented by a series of page loads interspersed with interactions like typing in fields and clicking buttons, making the synthetic test “feel” like a user to the actual applications under test. These tests are invaluable to application and network operations staff, since it helps IT and App Support better understand actual user experiences rather than playing the best guess or deflect game. These are presented back as “experience scores” which can be reported on, alert and track trends over time, providing an early warning before issues arise.

What problem does ThousandEyes fix?

In short, when an employee or a customer has a bad digital experience, they don’t care where the problem is, or what has caused it – they simply want to know what is wrong and when it might be resolved.

Marketing slide from Cisco ThousandEyes

The need and therefore market for this kind of tool is increasing, as the global pandemic dramatically accelerated the shift to the cloud and SaaS apps, and with the hybrid work, now just the way we work, we need a better way of monitoring and managing the end-to-end employee experience in an environment that no longer directly in control of IT!

As the world settles into what is now a hybrid work world dominated by the continual adoption of SaaS apps and work from anywhere mindset, visibility into how applications are performing for your employees and customers across the internet and various cloud services is critical to business continuity, employee, and customer experience.

Hybrid Work and the growth of SaaS
makes troubleshooting end user experience so much harder.

Today, we, many organisations are still reliant on “self-diagnosis” (or no diagnosis), which leads to conversations like “it’s the network” or “my broadband is slow” or “XXX application is running slow”. This might have been ok during the peak of the pandemic when everyone was sent home to work and was “making the best out of temporary situation”, but three years on this from this, diagnosing and troubleshooting performance related issues is still too commonplace. Now, more than ever, the ability to monitor the end-to-end performance of your business apps, dictates the experience of your customers and employees and the excuses of before are no longer tolerated.

When an employee or a customer has a bad digital experience, they don’t care where the problem is or what has caused itthey simply want it fixed quickly.

Many of these issues are not new, but the shift to cloud and our new distributed hybrid workforce, means that it is becoming increasingly more difficult to understand and support the right “experience” using traditional legacy application performance management tools. What’s more the lack of visibility can often means employees and customers can be having a poor experience without IT or support evening knowing about it until someone complains!

Who needs ThousandEyes?

  1. Do you have employee experience issues due to lack of Internet, WAN or SaaS visibility?
  2. How do you know your Content Delivery Provider is serving your content quickly and consistently whether users at home or in the office?
  3. Do you have inhouse web apps and need a better way of understanding how they perform? when your users work remotely or from disparate offices?
  4. Does your IT help desk struggle to add value and provide answers to users experience issue with SaaS applications?
  5. Is the lack of visibility and ability to monitor cloud apps, impacting employee productivity and/or customer experience?

If the answer to the above is mainly “yes”, then it’s worth looking at investing your time in a proof of concept to see how Thousand Eyes could help.

Why Cisco?

Personally, I think ThousandEyes is a great fit for any organisation with a cloud-first approach that has offices globally and leverages a high degree of hybrid workers (that’s most of us right!)! Whilst it’s not limited to those with only Cisco networks, the economics work well for organisations that already leverage Cisco networking, due to native integration across most of Cisco’s core product offerings including their Cisco Catalyst networking, SASE, SDWAN and their Collaboration suite (Webex).

This makes integration and deployment slick and negates the need to deploy additional agents, since Cisco include the ThousandEyes agent across many of their devices. Customers that buy into Cisco Enterprise Agreements also get a more competitive price point for ThousandEyes and from a support perspective it’s an integrated suite which means less finger pointing.

Speak to a Cisco partner for help

Speak to your favourite Cisco Gold Partner (I’m happy to help you need one) and they will be able to help demonstrate, deploy, configure, and support ThousandEyes for your organisation.

You will find your trusted Cisco partner can help in many ways including:

  • Demos, PoCs or specific product/application performance assistance
  • Cisco funded free trials
  • Help with business case development following a successful PoV
  • Scoping, deployment and tuning to ensure you can monitor all your in-house web and public SaaS hosted applications, connecting into your underlying Wireless LAN, WAN, MPLS, Internet connectivity and WFH remote locations to provide end-to-end visibility and end user performance monitoring.
  • Consultancy and support to ensure key departments, locations, users, and application estate is under cover.
  • Access to the best pricing through your Cisco Gold Partner.

See it action and find out more

Cisco provide free to access to this awesome “live outages site” where you can look at the live state of the world’s most popular commercial and consumer cloud services and see just how comprehensive and simple it is to use.

https://thousandeyes.com/outages
Cisco ThousandEyes Outages Site

ISE 2023 — Is Teams on Cisco Rooms just the beginning?

With ISE 23 kicking off this week in Barcelona, the UC world will no doubt be excited to see the developments, fruition and live demos of Cisco tech running Microsoft Teams.

This is significant for several reasons. Of course, Microsoft can run Webex, Zoom, RingCentral, and others from within Teams and many of the Teams hardware from Yealink, Poly, Logi etc can also run both Zoom and Teams on the same hard hardware, but this requires a reboot of the hardware causing a less than slick experience.

Is Cisco Rooms on Teams the beginning of a bigger plan?

What Cisco and Microsoft have done differently is that with this partnership, Cisco devices will not only run Webex or Teams, but the Cisco Meeting room kit will be able to do this seemlessly without a reboot

Cisco Room Kit running Microsoft Team

It will be interesting to see if any other Annoucements this week suggest that other Teams & Zoom meeting room kit will be lookimg to do the same!

Why is this significant?

The big questions is why would Microsoft find value in this after all Microsoft now has close to 300 million monthly active users and is the clear leader in is this space which it continues to innovate with new services and revenue streams expected from the recent launch of Teams Room Pro and Teams Premium.

According to analysts, Cisco and Microsoft share close to 90 percent of the same customers. Not necessarily in the collaboration space but across the board. Where that is Cisco’s networking business or Call Manager or Webex, Security or indeed their Contact Contact centre (which is soon to be certified for Teams.)

Most organisations like the idea of a smaller number of vendors to work with and if they can standardise on Cisco and Microsoft for their meeting room technology (since Microsoft don’t make the hardware for their Teams Rooms), this could be a big advantage.

For Cisco, this also means that they don’t loose the hardware and maintainance on their room systems should their Webex customer base decide to move partly or in full to Microsoft Teams.

For Microsoft, I think this also means bringing Cisco in as more of an advocacy – protecting both their install bases from their joint competition in this collaboration and voice space – Zoom, Google and RingCentral…vendors both Cisco and Microsoft do not want to see penetrate or weave into their account base.

Is this really about CPaaS?

Cisco is betting heavily on the success of its redefined Contact Centre solution Webex Contact Centre which could become a real significant player in the CCaaS space for Teams users and not just Webex customers.

Since the partnership was announced at Ignite, just before Xmas, much of Cisco messaging has been around  adding value to Teams rather than replacing it (though Cisco hope of course customers will still invest in Webex). The focus of much of the marketing is around making the user experience on Teams better by using Cisco technology.

Elevate your Microsoft Teams Rooms experience with Cisco devices”.

Here’s where CPaaS comes in. This partnership with Microsoft is also a great opportunity for Cisco to leverage its broader UC portfolio to add their Webex Contact Center natively into Team, attacking the plethora and crowded market of Teams certified contact centres such as Luware, Anywhere 365 and Enghouse.

Organisations with Teams, looking to replace their contact centre solutions are continually looking at Teams Certified solutions.

The Cisco Webex Contact Centre is already a  highly-regarded CCaaS solution, soon to be certified by Microsoft for Teams (maybe as soon as this week?).

Cisco Webex CC on Garner Magic Quadrant 2022

Cisco and Microsoft – Better together?

Only time will tell.. If the plan plays off Cisco should certainly be able to capitalise on market growth and their reputation and proven success in the CCaaS space. If they can secure Webex as the CPaaS of choice for Teams, this could significantly reverse the declining marketshare that Cisco has been suffering of late.

This will also help Microsoft block their other completion and prevent players like Zoom getting into their accounts. Together Cisco and Microsoft should be able to protect their join customer base making it harder for other UC vendors to eat their share.

Who might loose out to this partnership?

The Teams Room space is already well served by flexible, innovate solutions from the likes of Yealink, Poly, Neat and Logitech etc. For Teams organizations already invested in these brands, I see them sticking, but customers moving from Cisco to Teams now have the ability to reduce cost, maintain ‘brand’ and leverage thier investment and partnership with Cisco with less disruption, upheaval and change.

The CPaaS providers that develop Teams certified contact centres may be most worried by this partnership, since Cisco will now able to compete in their space which, whilst already crowded, lacks many true enterprise grade solutions like Cisco have.

Windows 365 now supports Azure AD SSO

Windows 365 now supports (Dec 2022) the creating of Azure AD Cloud PCs that use single sign-on. Previously this required a dual-sign in step.

This is a big improvement, and now means users only have to logon once to the Windows 365 Cloud PC app – from here on in, their CloudPC desktops will seamlessly sign-in (subject to any specific conditional access polices you may have applied of course.) It even works with passwordless sign-on . You can see the user experience below.

Windows 365 Cloud PC SSO Demo

Enabling the SSO setting

To enable SSO, administrators can update their existing Cloud PC provisioning profiles or create new Cloud PC policy with the “single sign on” setting enabled.

Enabling SSO for Windows 365 Cloud PC

Note: Existing Cloud PCs will not automatically support SSO – these will need to be re-provisioned, which can be done from the device pane in endpoint manager as show below.

Reprovision a Windows 365 Cloud PC

Read more from Microsoft

What’s new in Windows 365 Enterprise | Microsoft Learn

Why Cisco’s new Solution Specialisations are great for Cisco, their partners, and their customers

As tech vendors continue to modernise and revamp their partner programmes to better align with the pace of technology, changing needs of their customers, demands around hybrid work and the continual digital transformation acceleration, Cisco have recently added six new solution specialisations which aim to further build and support their partner competitiveness as well as recognise and reward partners with specific expertise and capability.

Image (c) Cisco

The six new specialisations are tied to Cisco customer priorities and represent fast-growing market opportunities for Cisco and its partners in areas where Cisco has been investing and innovating. These are heavily focussed around Hybrid Cloud and Hybrid Work and the solutions that enable these.

Cisco’s Solution Specialisations

The new solution specialisations are one of the four categories of partner specialisations available to qualified Cisco partners, like Cisilion to demonstrate their expertise to customers, including:

  • Architecture specialisations: demonstrate product expertise in specific technology areas.
  • Solution specialisations: demonstrate that a partner excels at delivering value with Cisco solutions, including cross-architectural offers prioritized by customers.
  • Cisco Powered Service specialisations: convey partner proficiency in delivering managed services and as-a-service offers.
  • Business specialisations: focused on horizontal business practices that are essential to supporting customers’ business goals.

Partners that achieve solution specialisations are recognised and rewarded based on the value delivered to customers. The requirements for each specialisation are tied to knowledge and experience, allowing partners to capitalize on their existing investments with Cisco.

The relevance of the new Solution Specialisations

Cisco say their solution specialisations are designed to “showcase partner value to customers and represent the type of solutions partners are selling today“. These specialisations (which are not simple to earn and retain), reflect how Cisco partners, like Cisilion, are using cross-architectural solutions to solve their customers’ biggest challenges (such as how to address the challenges or hybrid work) rather than just simply selling and deploying technology products. Cisco say that “the specialisations are awarded to partners that can demonstrate how they are working collaboratively with Cisco to help solve customer challenges such as balancing an organisation’s security needs with the flexibility employees want, providing the best digital experience or consistently delivering a secure user experience from anywhere.

Specialisation is ranked number one as the initial critical partner selection criterion for 74 percent of customers. By tying solution specialisations to customer buying criteria, Cisco makes it easier for customers to identify which partners to work with.

Techaisle Take: Cisco Partner Program

The six new solution specialisations

  • Full-stack Observability (FSO): Which highlights partners expertise in centralising and correlating application performance analytics across the full IT stack. This includes integrations across Cisco’s AppDynamics, Thousand Eyes, Intersight, and Secure Application. Partners with this specialisation can demonstrates expertise in prioritising actions to deliver superior customer experiences, drive revenue streams, and accelerate digital transformation for their customers.
  • Hybrid Work from Office: Which recognises partners for their skills and experience helping customers evolve traditional on-site and off-site work models, with solutions that power hybrid work, enabling people to work safely and securely from home, the office, and anywhere in between on any given day or time.
  • Secure Access Service Edge (SASE): Which highlights partners’ ability to help their customers to securely enable the growing universe of roaming users, devices, and software-as-a-service (SaaS) apps without adding complexity or reducing end-user performance.
  • Hybrid Cloud Computing: Showcases partners that provide customers with simple, secure hybrid cloud computing experiences at home, in the office, or anywhere.
  • Hybrid Cloud Networking: Recognises partners that securely and efficiently connect and manage customers’ data, workloads, and applications across data centres, edge, and multiple clouds.
  • Hybrid Cloud Software: Demonstrates expertise in managing operational complexity by helping customers streamline and unify IT operations with secure, hybrid cloud management software.

Benefits for Customers and Partners

The main benefit is that this approach takes away from an old-skool technology/product sell that was all about speeds, feeds, features, and cost, and instead encourages partners to have more meaningful “outcome-based conversation“. Cisco say this should help partners do what they do best – having a more “unified solution strategy” conversation with customers where technologies integrate and work together to provide solutions that are better than the sum of the parts.

Examples of this include the alignment between Cisco’s Webex video, calling and meeting services, the network infrastructure layer, the edge, and the Internet with integrated full stack visibility across these layers to ensure the best user experience whilst simplifying IT operations through management and support.

Should every organisation be considering Windows 365?

Windows 365 has just celebrated its first birthday – but what is it and why is Microsoft betting big on Windows 365 to help improve the employee experience, tighten security, and provide better agility for employees?

Businesses globally are once again being hit head on with challenges unrivalled in recent business history. Employee churn-rates are at record levels presenting unique business challenges, whilst the continuing shift in the workforce from centralised offices to home working has increased the number of “work locations” exponentially. Combined with the on-going global supply chain shortages, and logistical difficulties in procuring, preparing, and shipping new devices to employees makes onboarding new employees more challenging than ever. The continuing need to provide employees with a secure, professional, corporate desktop environment is pressuring IT to make decisions that can impact process, security, governance and above all employee satisfaction.

Microsoft are betting big with Windows 365, since it can help organisations significantly reduce the time it takes to provide new employees with access to their corporate desktop environment from days or weeks to minutes without compromising security. What’s more, unlike traditional on-premises Virtual Desktop Infrastructure (VDI) environments, Windows 365 (which is a new category of cloud computing, known as Cloud PC, simplifies the entire provisioning process and user experience.

In conjunction with the Enterprise Security Group, Microsoft recently carried out a TEI study which found that by leveraging Windows 365 Cloud PC, organisations can significantly lower the cost of providing access to an organisation’s end user computing environment whilst improving security and employee satisfaction. The ESG report also revealed that Windows 365 can provide a “typical organisation” with an overall annual benefit of up $7,271 per user for small businesses and up to $6,765 per user for companies with over 1,000 employees.

What is Windows 365?

In short, Windows 365 unlocks a new category of hybrid personal computing, called “Cloud PC” that delivers Windows from the cloud. It aims to provide a hybrid approach to providing client computing by utilising a cloud service that is not tied to any specific hardware.

Image (c) Microsoft

Windows 365 combines the power and security of Windows 10 or Windows 11 with the scalability and versatility of cloud to provide a personal, reliable, and familiar work/desktop environment on any supported physical device. If want to see it in action, you can head over to Microsoft’s YouTube video here.

Similar in concept, but different to VDI technology, Cloud PCs are one of the newest Microsoft cloud solutions to come to market. Cloud PCs are optimised for business and user agility, are highly secure, persistent to the user and are billed on a per-user, per-month model that simplifies the cost and infrastructure complexity of client computing environments and on-premises VDI solutions.

The report by ESG validated that Windows 365 provides capabilities that address nine of the ten business challenges identified by IT leaders.

Source: ESG Complete Survey Results, End-user Computing Trends, February 2022.

SIMPLE, COST EFFECTIVE, POWERFUL, SECURE – Windows 365 works by giving each user a dedicated Cloud PC (of a chosen specification) that runs their own individual Windows 10 or Windows 11 desktop environment while providing an extremely simple-to-manage ecosystem all managed via Microsoft’s Endpoint Manager toolset which is used to manage the rest of the physical desktop or laptop estate. For users, this means they can bring their existing device and instantly be presented with a familiar and powerful end-user computing experience either while they “wait” for their replacement or physical device or instead of waiting for IT to procure, provision, and image a new corporate device. In turn the ESG report finds that Cloud PC technology provides an effective solution for organisations of any size and sector, which are working to meet the complex needs of a hybrid or remote workforce.

Benefits of Windows 365 Cloud PC

Cost Predictability

The ESG report, concludes that Windows 365 delivers a combination of lowered costs, eliminated costs, and a predictable fixed cost model which can provides significant financial benefit in several areas.

  • Lower costs: Shifting to Windows 365 lowers and eliminates costs in several areas, including VDI licensing, server operating systems, remote desktop licensing, storage, management, power and cooling, license management, VDI management, procurement, and end-of-life costs.
  • Fixed-price model: Windows 365 Cloud PC pricing is based on a simple per-user, per-month model which that allows organisations to match computing and storage needs to individual user requirements. There is value in being able to project costs in business. Most VDI pricing models are based on consumption, which, while this may initially seem like an advantage, most organisation often find that their monthly charges extend far beyond projections when usage spikes unexpectedly.
  • Ability to cross-charge services: Organisations that charge internal or external business groups fees for licenses, hardware, or services will find that the Windows 365 predictable cost model makes it much easier to allocate specific costs in a granular and predictable way, especially when compared to the capital-intensive purchases needed to facilitate on-premises VDI or DaaS.

Business and User Agility

With employee churn-rates are at record levels, continuing delays in supply chains and with more employees, contractors and temporary staff being permanently remote, getting new employees up and running as quickly as possible is a big challenge. Windows 365 allows companies to provide highly secure Cloud PCs running Windows 11 on their device within minutes verses hours, days, or weeks.

  • Time to employee enablement: The time from when a new employee, temporary worker, or contractor is hired to when they are fully onboarded with their corporate device often takes time, leads to the employee getting a second-hand device, or means it delays their onboarding time. Leveraging Cloud PC technology can, however, means that organisations can now provide new starters with a new Windows desktop is under an hour, allowing them to security access their work environment from any supported device that the new worker wishes to use, even if it is only a temporary situation.
  • Enablement of temporary/seasonal workers – The cost in both money and time to empower short-term workers with a company work environment is often high, and either inhibits an organisation’s willingness to employ temporary works or worse, means they are forced to compromise on security due to the time to procure and provision a device. With Windows 365, temporary workers can quickly be provisioned so they have immediate access to the corporate environment while safe in the knowledge that all intellectual property stays secured within the corporate environment, and that the Cloud PC can be immediately removed at the end of the contract period.
  • Efficient IT Management – When compared to the effort required in procuring, preparing, and delivering laptops to users or even configuring and deploying virtual desktops with traditional VDI platforms, deployment of Cloud PC technology like Windows 365 can result in a 46% reduction in IT effort.
  • Ability to use any device – Windows 365 allows IT to provide workers with a highly secure, Windows 11 desktop on any supported device even though the host device may not be capable of natively running the OS. This is also great for “Bring Your Own Device” (BYOD) scenarios for employees who may just be starting or have shifted to working from home or short-term workers such as interns, contractors, and consultants.
  • Increased ability to react quicky to seasonal demand – The ability to get a secure, corporate desktop to users quickly is one of the barriers to rapid enablement. Windows 365 Cloud PCs empower businesses to immediately create and decommission desktops to react to opportunities that might be ignored in other DaaS or VDI environments.
  • Equality with the employees – The mindset of the workforce has changed from “May I have a job?” to an attitude of “What are you willing to do to keep me as an employee?”. Treating all employees as equals and providing them with a premium, professional-grade work environment is two of the key criteria for ensuring employee satisfaction. With Windows 365, employees can access a highly secure, personalized Windows 11 work experience through their Cloud PC, regardless of location or available device.
  • Merger and acquisition (M&A) scenarios – Mergers and acquisition events take months, even years, to align the separate work environments that result in an M&A to the same access and security postures. This limits potential cooperation between the entities and delays the full realization of value for the event. The ability to rapidly assimilate the new entities to the existing EUC solution accelerates the time to value and reduces the cost and risk of running parallel environments. The time to combine these two work environments into one can be significantly reduced by using Windows 365 Cloud PC.

Improved Security Posture

Employees and contractors today are working outside conventional environments and often on hardware that was never intended to be on corporate networks. The result is an increased risk of security breaches and data loss and, in many cases, missed business opportunities. ESG has found that organizations that adopt Windows 365 can help enhance their security posture in the following areas.

  • Inclusive, Secure, yet Flexible remote work – Cloud PCs can enable a hybrid workforce in a highly secure manner, even if those workers sometimes or always do their work on devices that aren’t expected to have direct access to corporate networks. Windows 365 Cloud PCs offer a layer of isolation that provides strong protection for the work environment and helps prevent data leakage or loss, with configurable options for how the Cloud PC interact with available physical device.
  • Business continuity and governance – As we know, COVID-19 forced almost every business to suddenly rethink, re-shift and re-prioritise their approach to remote work in a matter of days – doing all they could to get devices, repurpose old kit, leverage employee’s personal devices and ramp up VDI deployments, VPN and remote access tech to enable their people to work, often at the expense of usability, security and governance. As the future of this now unfolds into the hybrid workplace we see before us, technology like Windows 365 becomes a viable BC/DR solution. In short, Windows 365 could now be a vital cornerstone of a business continuity strategy and one that minimises disruption, maintains security and governance and provides a smooth transition for users.
  • Immediate on-boarding and offboarding of employees/contractors – The cost of PC recovery in the event of an offboarded employee or contractor is high and can take weeks in today’s expanded work environment. Interestingly, IBM estimates that 44% of breach events are caused intentionally by disgruntled employees who have been terminated but still have access to company hardware and resources. One of the benefits of Windows 365 is that as well as near instant provisioning, it also allows for the immediate removal of access to the Cloud PC along with all company data.
  • Protection of company data – the FBI estimate that 1 in 10 laptop devices will be lost or stolen during their lifetime, with the risk and financial exposure per event estimated to be between £25,000 and £45,000. Since Windows 365 Cloud PC devices store no data on the host device, a lost or stolen Cloud PC can be limited to the cost of the hardware and can be instantly accessed on another device, meaning no loss of productivity and no risk or loss or theft or corporate data.

What’s your experience of Windows 365?

As always, I’d love to hear your experiences, thoughts, and feedback on this – please leave a comment in the boxes below.


To read more about Windows 365, you can also check out Microsoft’s official FAQ

Cisco Live 2022: Cisco Catalyst Management is coming to the Meraki cloud

At Cisco Live 2022 this week, Cisco annouced that Catalyst is coming to the Meraki cloud which put simply means that organisations will now be able to manage their Catalyst switches and access points using the Cisco Meraki cloud dashboard, providing a centralised view of the network with real-time switch status and health.

Image (c) Cisco Meraki

Supported platforms

At time of launch, the Catalyst 9200, 9300 and 9500 switching platforms will be supported in the Meraki dashboard with two different options:

  • Cloud Monitoring (monitoring only)
  • Cloud Management (monitoring and config management)

Licensing

  • Monitored Catalyst switches needs only a Meraki license.
  • Fully managed Catalyst switches requires DNA Advantage (DNA-A) or DNA Essentials (DNA-E) licensing.

The main difference between the two switching licenses is that DNA-E will not include application visibility or client usage data.

Is this the end to DNA Center?

Put simply, No. What Cisco is doing is providing more flexibility and options to their customers. It will mean, however that organisations will need to make a choice as to where that want to manage their Cisco Catalyst infrastructure. In Meraki, in DNA Center, or standalone.

Once a Catalyst switch is fully managed by Meraki it will no longer be an IOS device and will instead run Cisco Meraki software. If the Catalyst switch is a monitored only switch though, it will still be accessible and manageable via the CLI.

New Catalyst Wireless Switches

Cisco also annouced that they are introducing three new Catalyst wireless access points that can be managed by their Meraki dashboard or a C9800 controller.

  • Catalyst CW9166
  • Catalyst CW9164
  • Catalyst CW9162

Feature Partity with DNA Center?

No.. Well not initially anyway.

Since this is the first iteration of Catalyst management within the Meraki Cloud dashboard, there will not be feature parity with what is possible with the CLI or DNA Center. Initially all the core basic basic monitoring and configuration will be available and Cisco have a said a feature list and roadmap will be published soon.

Why are Cisco taking this approach?

Cisco have traditionally been continuing to build on-premises software solutions, such as DNA Center, but with their increased focus of software subscriptions and cloud this is a logical move and something their competition have been doing for a while.

Since the aquisition of Meraki back in 2013, Cisco have continued to try to provided multiple options for their customers and this appears to eb a great move into that hybrid space, providing and option for scenarios where DNA Center maybe too much or complex, but a more simplistic cloud managed approach with a Meraki may well fit organisations who want cloud management with Meraki while still having the feature-rich capabilities of the Catalyst product set.

Getting Started…

Cisco advise their customers to speak to their account manager, work with their trusted a isco partner and / or to check out their get started guide. There’s no need to go full in and organisations can start their move cloud management for Catalyst at their own pace.


Read the full detail from Cisco

Microsoft Entra aims to secure access for the multicloud connected world

Microsoft has just announced “Entra“, which is the latest “family of products” and joins their other suites alongside Priva and Viva.

Entra brings together all of Microsoft’s identity and access products and services and includes Microsoft Azure Active Directory (Azure AD), as well as their Cloud Infrastructure Entitlement Management (CIEM) and decentralized identity services.

Identity is one of the biggest cornerstones for cybersecurity.

Microsoft Entra. Image (c) Microsoft

Microsoft Entra aims to help simply the way organisations approach and accomplish attack surface reduction in the multicloud, hyperconnected world by filling the biggest and most critical gaps. It does this by:

  • Protecting access to any application or resource for each and every user
  • Secure and verify every identity across hybrid and multicloud environments
  • Discovering and governing permissions in multicloud environments
  • Simplying the user experience with real-time intelligent access decisions.

Microsoft Entra embodies our vision for what modern secure access should be. Identity should be an entryway into a world of new possibilities, not a blockade restricting access, creating friction, and holding back innovation. We want people to explore, to collaborate, to experiment – not because they are reckless, but because they are fearless.

Microsoft.

Entra works with the majority of all cloud platforms, including Azure, AWS, Google Cloud, as well as other Microsoft apps and websites.


To find out more, visit the Microsoft Entra website to learn more about how Azure AD, Microsoft Entra Permissions Management, and Microsoft Entra Verified ID deliver secure access for our connected world.

Cisco becomes first SD-WAN vendor to leverage Microsoft Informed Networking Routing to optimise performance of Microsoft Teams and SharePoint

Cisco Cloud On-Ramp

Cisco has released an updated version of their SD-WAN software which now supports the optimal routing of Microsoft SaaS apps including Microsoft SharePoint, OneDrive, and Teams on their SD-WAN. Cisco’s Vipella SD-WAN solution is the first SD-WAN solution to be certified for this.

Note: At time of writing, this feature applies to Cisco’s Viptela SD-WAN solution and is not currently supported in the Cisco Meraki SD-WAN portfolio. This may change.

With this update to the Cloud OnRamp feature, Cisco SD-WAN “further integrates Cisco’s support for Microsoft’s Informed Network Routing technology that lets organisations share Microsoft 365 app feedback telemetry with networking vendors and to receive network link telemetry from them”, according to Jeevan Sharma, Manager, Product Management, Enterprise Cloud & SD-WAN group at Cisco in a blog about the enhancements.

Known as Cloud OnRamp for Microsoft 365, it uses “proactive and continuous link probing to assess the best performing path at any point in time. It also allows network admin to utilize Microsoft URL categories granularity for categorizing the Microsoft 365 apps into Optimize, Allow and Default categories, while active link probing makes sure that the best performing path is always selected”.

How it works

This latest update to Cisco’s SD-WAN software, which continually monitors and controls the connectivity, management, and services between data users (remote or office based) and cloud and data centre services, now includes support for more Microsoft SaaS applications specifically SharePoint (and OneDrive) and Microsoft Teams.

Cisco SD-WAN customers can leverage Cisco’s Cloud OnRamp to intelligently route Microsoft 365 traffic, to provide the fastest, most secure, and most reliable end-user experience. This is done by ensuring that all connectivity paths to Microsoft 365 from each WAN / Internet connection at the branch, office, regional hub and/or data center is monitored continuously for performance, and application traffic is then dynamically routed to the best-performing path without requiring human intervention. Cisco Cloud OnRamp also provides real-time and historical visibility into SaaS application performance.

“I am excited to announce that the integration between Cisco SD-WAN and Microsoft Informed Network Routing now includes support for Microsoft Teams and SharePoint app telemetry. This update will help us deliver an improved end-user experience through enhanced cloud connectivity. The partnership between Microsoft 365 and Cisco SD-WAN further enhances your Microsoft Teams and SharePoint experience by optimizing routing and path selection beyond traditional network telemetry probes”

Jeff Mealiffe | Principal Architect | Microsoft 365 Core Networking | Cisco

Microsoft and Cisco Partnership

Cisco SD-WAN is Microsoft Network Partner Program (NPP) certified and is also a Microsoft 365 networking partner. As part of this program, Cisco SD-WAN aligns with the Microsoft’s Connectivity Principles aimed at helping Microsoft 365 customers achieve optimal end-user experience.

What is SD-WAN?

SD-WAN technology is available from leading network and vendors such as Cisco, Palo Alto etc, and typically include routers and switches or virtualised customer-premises equipment (vCPE). They run together using a connected software stack that handles things like policy, security, networking functions, and other management and security functions.

Cisco SD-WAN technology enables enterprises to build a scalable and carrier-neutral WAN infrastructure, allowing them to reduce WAN transport costs and network operational expenses. Cisco SD-WAN enables IT to apply business-centric, application-aware, and differentiated routing policies – providing end users at the remote offices, branch direct connectivity to performance-intensive trusted app, such as Microsoft 365, while routing generic Internet traffic via SWGs, CASBs, or the customer’s VPN connected data center.

Microsoft’s new “Cyber Signals” gives vital insights into current cybersecurity threats

Microsoft has launched their first Cyber Signals, a new quarterly cyber intelligence brief that highlights the latest cyber security threats, tactics, and strategies and is aimed at Chief Information Security Officers, Chief Information Officers, Chief Privacy Officers and other senior security opps teams.

Microsoft Cyber Signals Report

The brief is built using Microsoft’s extensive threat and data and research which leverages insights from more than 24 million security signals as well as intelligence data mined from the monitoring of 40 nation-state groups and over 140 threat groups. Microsoft has focused the first edition specifically on identity, which they believes is “the battleground for security” and the biggest weakest link in most organisations security posture.

In the briefing, Microsoft state that “Our identities are made up of everything we say and do in our lives, recorded as data that spans across a sea of apps and services. While this delivers great utility, if we don’t maintain good security hygiene our identities are at risk. And over the last year, we have seen identity become the battleground for security.

Perhaps the biggest point raised in this Cyber Signals report is the worrying low adoption of strong identity authentication across organisations. This includes multifactor authentication (MFA) which are proven to reduce the risk of compromised identity by 99.9%.

Here are they key highlights from the report.

  • Only 22% of customers using Microsoft Azure Active Directory (Azure AD), Microsoft’s Cloud Identity Solution, have implemented strong identity authentication protection as of December 2021.
  • Microsoft Defender for Endpoint blocked more than 9.6 billion malware threats targetting enterprise and consumer customer devices
  • From January 2021 through December 2021, Microsoft blocked more than 25.6 billion Azure AD brute force authentication attacks and intercepted 35.7 billion phishing emails with Microsoft Defender for Office 365.

The full brief also examines how nation-states are using spear phishing attacks and targeted social engineering to obtain passwords and other sensitive data. It also details the latest Ransomware attack trends and how they are being along with guidance and recommendations for how to stop the attacks.

“Microsoft ended 2021 with 71 billion cyberattacks blocked.”

Microsoft Cyber Signals

Much of the research explained by leading security chiefs including Christopher Glyer – the principal threat intelligence lead at the Microsoft Threat Intelligence Center which employs nearly 4,000 security experts and threat hunters.

You can learn more about these trends and read the report on Microsoft’s Security Blog site….

… Oh and please let’s get MFA enabled for all corporate accounts and close that front door!

Use MFA

Defender for Endpoint now included within Microsoft 365 E3/A3

As of today (14th Jan 2022) Microsoft Defender for Endpoint Plan 1 is now included within Microsoft 365 E3/A3 licenses.

Microsoft Defender for Endpoint (Plan 1) extends Microsoft 365 security by including world class threat and attack prevention capabilities to help you deliver against your Zero Trust strategy, reduce cost (by negating the need for additional products) and simplifies security management.

Defender for Endpoint Plan 1 includes the following key features (among others).

  • Next generation, born in the cloud, antivirus, anti malware and anti ransomware protection that leverages all the intelligence of the Intelligent Security Graph to help keep users endpoints secure and protected.
  • World class attack surface reduction capabilities that harden the device, prevent zero day attacks, and provide granular control over access.
  • Device based conditional access which leverages Azure AD and the Intelligent Security Graph to provide additional layers of protection and breach protection and forms a key part of your Zero Trust Security architecture.

Microsoft Defender is a Top right Magic Quadrant leader for Endpoint Protection.

Gartner Magic Quadrant for Endpoint Protection

What’s included in Defender for Endpoint Plan 1

The following diagram from Microsoft illustrates the key services and features included within both Plan 1 (now part of Microsoft 365 E3 and A3) and Plan 2 (part of Microsoft 365 E5 and A5 or available as an add-on).

Defender for End Point Plan 1 vs Plan 2.

Microsoft Defender for Endpoint Plan 1 supports client endpoints running Windows 7 with Extended Security Updates, 8.1, 10, 11, macOS, Android, and iOS.

What about Plan 2?

Microsoft say that Plan one provides a strong baseline and leading edge protection against modern day, zero day and every advancing threats.

For the complete set of endpoint security capabilities, as shown above, Microsoft advise that organisations strongly consider Microsoft Defender for Endpoint Plan 2.

“Plan 2 builds on Plan 1 and provides a best in class EDR solution including automated investigation and remediation tools, advanced threat prevention and threat and vulnerability management (TVM), and hunting capabilities which which combined with the wider Microsoft Defender suite provides seemless, integrated and cross architecture protection”.


To find out more, please refer to the official Microsoft documentation.

https://aka.ms/MDEP1docs

Microsoft SIP gateway service let’s you use legacy SIP phones with Teams

Microsoft’s SIP gateway service was officially released as of today today. This means organisations can now repurpose a wide range of ‘old’ SIP phones and use them with #MicrosoftTeams helping to reduce TCO of Teams Voice Migrations and drive value out of legacy hardware.

The new SIP Gateway Service (which has been in private preview for a few months) is a solution that enables core Teams calling functionality on compatible SIP phones including many from Cisco, Poly, Yealink and AudioCodes.

Microsoft SIP gateway

Breathing life into legacy handsets

The SIP Gateway supports the following core Teams calling functionality:

  • Inbound and outbound calls
  • Call transfer
  • Meeting dial-in and dial-out
  • Device level based “do not disturb”
  • Voicemail with message waiting

The SIP Gateway Service is FREE

Microsoft are making the SIP Gateway service for free, and any user can use the SIP Gateway so long as they meet the following requirements.

  • Licensed for Teams Phone via Office 365 E5, Microsoft 365 E5 or a standalone license.
  • Enabled for PSTN, which means a phone number in Teams assigned via Calling Plan, a Direct Routing or Carrier Connect (calling via third party apps not supported)
  • Common Area devices licensed via Common Area Phone license.

For the best experiece Teams Phones are recommended

In the official Microsoft Teams blog, Microsoft reminds us that while their SIP Gateway and Skype for Business 3PIP Gateway services provide valuable flexibility for organisations wishing to sweat their legacy SIP phone investments, Teams phone devices provide the most complete Teams experience.

What devices are supported

These are the currently supported phones (at time of writing).

  • Cisco IP Phones (6821,7800 series, 8800 series)
  • Poly SIP Phones (VVX 100,200, 300, 400, 500, 600 etc.)
  • Yealink Phones (T20, T30 T40 and T50 series)
  • AudioCodes HD 400 series

Note: for Cisco, organisations need to license the MPP firmware for each SIP phone


You can read the full annoucement here:

https://techcommunity.microsoft.com/t5/microsoft-teams-blog/enable-core-microsoft-teams-calling-functionality-on-compatible/ba-p/3030196

Cisco’s new Enterprise Agreement is great for partners and customers

I feel I must congratulate Cisco on the annoucement of their new partner and customer centric Enterprise Agreement.

Simple and Inclusive

This looks and feels like one of the simplest yet powerful subscription based licensing programmes in the channel… at a time when “other” major vendors seem to be struggling to get a model right that is fair and offers value to both customer and partners regardless of size.

Consistent across their solution portfolio

When fully available in early 2022, Cisco will make their full portfolio of services available through a single agreement rather than the current multiple EAs with different terms, rules and portals they have today. Instead the EA will cover all five of Cisco’s solution areas – application infrastructure, networking infrastructure, collaboration, security and services.

Helps make it easy for customer to buy solutions across the stack

This new EA will dramatically simplify purchasing and selling as it creates one program and one experience for everything Cisco do and aligned to their product portfolio.

For example, Cisco has been beating the drum hard with the concept of “full stack observability”, which is growing in importance in this multi-cloud centric, highly mobile and hybrid world.

To make this a reality, customers, need to buy products across multiple technology and solution stacks, including services like AppDynamnics, ThousandEyes, Intersight etc., but this new should make it much easier for partners to sell and for customers to buy.

#cisco #collaboration #ciscopartner #security #partners #customers #subscription

%d bloggers like this: