Categories: Blog

LastPass and Azure to secure the Cloud

In my last post, I explained how to secure user accounts in AWS. My discussion on cloud security wouldn’t be complete without also addressing the second most popular cloud computing platform – Azure.

To protect your Azure ecosystem, you need to enforce proper password hygiene throughout your organisation. To understand why, take a look at these concerning password statistics:

– 53% of people don’t change their password after it was compromised in a known breach – 76% of employees experience regular password problems

If every employee in your organisation exercises secure password practices, the probability of account compromise leading to an Azure ecosystem breach could be avoided.

Fortunately, you can enforce organisation-wide adoption of proper password hygiene by setting up federated login for LastPass using Azure Active Directory.

Here’s how you do it:

Step #1: Create a Provisioning Token and Capture the Connection URL in LastPass Step #2: Configure the Provisioning App for LastPass in Azure AD Step #3: Configure the Login App for LastPass in Azure AD Step #4: Configure Federated Login Settings for Azure AD in LastPass Step #5: Add Users/Groups to the Provisioning and Login Apps in Azure AD

If you’d like a detailed breakdown of each step, let me know in the comments, and I’ll send over a tutorial.

When this integration is complete, all of your employees will have instant access to their LastPass vault after logging into Azure AD. This will enforce exemplary account security practices by ensuring:

  • Password recycling never occurs
  • Secure login processes are maintained even when SSO isn’t supported
  • Only complex passwords are used
  • Multiple-Factor user authentication (one of the hardest security controls to compromise)
  • Uninterrupted user workflow

By addressing one of the primary attack vectors in a cloud environment – account compromise – LastPass offers a cost-effective and highly- efficient method for strengthening the security posture of your Azure ecosystem.

What are your top 3 most recommended cloud security controls? I’d love to know your thoughts.

Mark Howarth

Cybersecurity Expert, Managing Director, Surfer

Recent Posts

Integrating RightFax with OAuth for Office 365/Exchange Online: Enhancing Security and Streamlining Access

In today's digital age, security is paramount, especially when it comes to sensitive data and…

6 months ago

Optimising Healthcare Communications: The Power of RightFax and Epic Integration

In today's fast-paced healthcare landscape, effective communication and efficient data management are crucial. Discover the…

12 months ago

LastPass with VPN access – a technical overview

When the pandemic forced businesses to adopt a remote working model, most welcomed the change.…

2 years ago

LastPass and Workstation Login using Biometrics

Imagine how simpler life would be if passcodes, passwords, and locks didn’t exist. We’d into…

2 years ago

LastPass and AWS to secure the Cloud

Digital transformation is rippling through the business landscape, and it's not hard to see why.…

2 years ago

How Human Errors Lead To Catastrophic Breaches

You’re only as strong as your weakest link, and in the case of cybersecurity, that…

2 years ago