microsoft - nercomp€¦ · microsoft enterprise mobility suite microsoft azure rights management...

31
Microsoft: What’s new and cool FY16 Matt Hickey Principal ATS January 2016

Upload: others

Post on 21-May-2020

8 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Microsoft:

What’s new and cool FY16

Matt Hickey

Principal ATS

January 2016

Page 2: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

What’s new and cool?

Page 3: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Mobile FirstCloud First

CloudSocial Big dataMobility

“Everything we do in the world going forward is about ubiquitous

computing and ambient intelligence. It is an amazing opportunity.”

- Satya Nadella

Page 4: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Ad

van

ced

Serv

ices

Sta

nd

ard

S

erv

ices

Off

ice

Exchange Online

eDiscovery Hold/Export , DLP

Office Online

*Price per user/month (Faculty / Student)

Skype for business

Office 365 ProPlus

Voicemail support

SharePoint Online and OneDrive

Yammer

Analytics, PowerPivot, Visio services

Office 365 Plan E3

US$ 4.50* / 2.50*

Rights Management Services

Office 365 Plan E1

FREE

*

Office 365 Plan E4

US$ 3.00* / 6.00*

Full Voice with PSTN

Email, Calendar, Contacts

IM, Presence, Web Conference

Team sites, Video, storage, sharing

Enterprise Social

Edit Office documents in a browser

Office Pro Plus or Office 2011 for

Mac, Office for iPad

Encrypt eMail, Documents

Advanced compliance – Legal tools

Data Analysis

Unified Messaging in Inbox

Replace PSTN

Project Online Manage projects

eDiscovery Search One tool for eMail and Documents

Page 5: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Ad

van

ced

Serv

ices

Sta

nd

ard

S

erv

ices

Off

ice

Exchange Online

eDiscovery Hold/Export , DLP***

Office Online

*ProPlus license included for students at no additional cost when Office is purchased for faculty and staff

**ERP per user/month (Student / Faculty)

***These services will be included after initial launch

Skype for business

Voicemail support***

SharePoint Online and OneDrive

Yammer

Analytics, PowerPivot, Visio services

Office 365 Education

US$ 1.50** / 2.00**

Rights Management Services

US$ .50** / 1.50**

Email, Calendar, Contacts

IM, Presence, Web Conference

Team sites, Video, storage, sharing

Enterprise Social

Edit Office documents in a browser

Encrypt eMail, Documents

Advanced compliance – Legal tools

Data Analysis

Unified Messaging in Inbox

Project Online Manage projects

eDiscovery Search One tool for eMail and Documents

Office 365 ProPlusUp to 5 installs on PC or Mac +

mobile devices

Full Voice with PSTN Replace PSTN

FREE

incl. w/ benefit*

Ad

dit

ion

al

Serv

ices

Page 6: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

http://www.gartner.com/technology/reprints.do?id=1-2IXWNX2&ct=150702&st=sb

Page 7: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key
Page 8: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

An on-premises platform to identify advanced security attacks before they cause damage

Credit card companies

monitor cardholders’

behavior.

If there is any abnormal

activity, they will notify the

cardholder to verify charge.

Microsoft Advanced Threat Analytics brings this

concept to IT and users of a particular organizationComparison:

Page 9: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Behavioral

Analytics

Detection for known

attacks and issues

Advanced Threat

Detection

An on-premises platform to identify advanced security attacks before they cause damage

Page 10: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Abnormal Behavior Anomalous logins

Remote execution

Suspicious activity

Security issues and risks Broken trust

Weak protocols

Known protocol vulnerabilities

Malicious attacks Pass-the-Ticket (PtT)

Pass-the-Hash (PtH)

Overpass-the-Hash

Forged PAC (MS14-068)

Golden Ticket

Skeleton key malware

Reconnaissance

BruteForce

Unknown threats

Password sharing

Lateral movement

Page 11: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Windows Intune

Mobile device settings

management

Mobile application

management

Selective wipe

Microsoft Azure Active Directory Premium

security reports, and

audit reports, multi-

factor authentication

Self-service password

reset and group

management

Connection between

Active Directory and

Azure Active Directory

Microsoft Enterprise Mobility Suite

Microsoft Azure Rights Management service

Information protection Connection to on-

premises assets

Bring your own key

Page 12: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Azure Active Directory Premium

Cloud based IDM providing federation, directory

services, device registration, user provisioning,

application access control & data protection.

• On-premises and cloud Active Directory managed

as one

• Self Service Password reset and group management

• Multifactor authentication

• Branded Logon page

• SSO to 1200+ SaaS applications

• Advanced Security Reports

Identity

https://www.microsoft.com/en-us/server-cloud/products/azure-active-directory/

Page 13: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Microsoft Azure Rights Management Service

• Digital Rights Management for files

• Centralize School information for compliance and data protection

• Provide policy-based access control for applications and data

• Integrates with Exchange and SharePoint

• Automatically identify and classify data based on content with automatic encryption

• More securely share documents with colleagues and business partners

https://products.office.com/en-us/business/microsoft-azure-rights-management

Page 14: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Microsoft Intune

Manage staff or student machines

• Windows Updates

• Forefront Antivirus/Antimalware

• HW/SW Inventory

• Software distribution

Manage Mobile Devices

• Agent for Windows Phone, iOS, Android, Windows,

Windows RT

• Security policies

• Software distribution – side load apps

• Selective wipe, remote lock, remote password reset

www.microsoft.com/intune

Page 15: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

MicrosoftOperations Management Suite

Operations Management Suite (OMS)Simplified guest and workload management anywhere (on-premises or in the cloud)

Page 16: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Log analytics IT AutomationBackup & Recovery Security & Compliance

Operations Management Suite Capabilities

• Effortless log collection

• Integrated fast search

and queries with custom

dashboard

• Integrated cloud backup

• Seamless disaster

recovery and workload

migration

• Hybrid runbook worker

• Graphical workbook

authoring and

automation DSC

• Malware assessment

• Security posture and

system update

assessment

Spot problems fast Automate tasks quickProtect data easily Recognize threat early

With OMS capabilities customers can…

extending System Center capabilities, as an all-in-one management solution!

Page 17: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key
Page 18: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Azure Education Workloads and Scenarios

Saved VM State

Cloud Snapshotsto nearby cloud storage

service region

Cloud Clonesto remote cloud storage region

for DR

Snapshot

Primary Volume

Servers

StorSimple Cloud-Integrated Storage (CIS)

Page 19: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

User running RemoteApp client sees application open in a standard App window (Memory/CPU/Disk space NOTconsumed here)...

Azure RemoteApp

Microsoft Azure

Remote App

Applications execute on Azure Platform(Memory/CPU/Disk space consumed here)...

Individual application user interface is sent over the network connection

Applications Centrally Managed on Azure

Massive scale & elasticity (VMs spawn based on demand)

Applications appear to be running locally @ the client

Apps run on Windows, Mac OSX, iOS and Android

Page 20: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Microsoft Identity Manager 2016

http://www.microsoft.com/en-us/server-cloud/products/microsoft-identity-manager/

Identity

Management

Page 21: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Any data, any way, anywhere

Page 22: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

What to Use When and WhySelf-Service

Analysis

Business Reporting

Parameterized & Operational

Reporting

Performing Monitoring

ScorecardingMap-based Reporting

Schematic / Network

Reporting

IT Authored

Power User Authored

Business User Authored

Free Form Data Exploration

Guided Data Navigation

Structured Data Analysis

Spatial Data Analysis

Bing Maps

Reporting Services

Reporting Services

Performance PointPerformance Point

Report Builder

Power Pivot for Excel and SharePoint

Power BI

Power View

Excel Excel Services

Power BI

Power View

Page 23: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key
Page 24: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

System Center Licensing Changes

Server Licensing Client Licensing

1. System Center Standard Edition Server

Management License (allows you to manage 2

VMs)

2. System Center Datacenter Server

Management License (allows you to manage

unlimited VMs per physical

• Configuration Manager +

• Data Protection Manager ++

• Endpoint Protection +

• Operations Manager ++

• Orchestrator ++

• Service Manager ++

• Virtual Machine Manager ++

1. Configuration Manager Client Management

License

– Configuration Manager *

– Virtual Machine Manager *

2. Endpoint Protection Subscription

– Endpoint Protection *

3. Client Management Suite

– Data Protection Manager **

– Operations Manager **

– Orchestrator **

– Service Manager **

* Part of CORE CAL Suite** Part of ECAL Suite

+ Included with Core Server Platform Agreement++ Included with Enterprise Server Platform Agreement

Page 25: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Exchange Enterprise CAL

In place hold and

retention

management,

eDiscovery

Client Access License Suites FY16

Exchange Online Archive

Online archiving for

Email

System Center CML

Ops Manager

Service Manager

Data Protection

Manager

SharePoint Standard CAL

Class sites, team sites,

document libraries,

App catalog and

marketplace.

Lync Standard CAL

Skype Presence/IM

Interoperability

CAL Suites

SharePoint Enterprise CAL

Access services,

Infopatch forms

services

SharePoint Enterprise CAL

BI: Power View,

PerformancePoint

Services, Excel

Services, and Visio

Services

Exchange Enterprise CAL w/ Services

DLP – Data Loss

Prevention

Windows Server

File and Print, Active

Directory, etc.

Exchange Standard CAL

Email, calendar,

contacts

System Center Configuration ManagerAntivirus,

Software/OS

distribution, Patching,

remote control, etc.

Skype Enterprise CAL

Skype multi-view

video,

Skype Web App

meetings,

Enhanced note

taking

ECAL ECAL CORE

CORECOREECAL ECAL

ECAL COREECAL CORE

ECAL

Page 26: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Azure AD Premium Multi-Factor Authentication

Page 27: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Data Privacy

Compliant and certified with worldwide privacy standards

More certification information is available at the Azure Trust Center.

Microsoft Azure

ISO/IEC 27018

SAS 70/ SSAE / SOC 1 / SOC 2

FedRAMP

HIPAA BAA

EU-Model Clauses / Safe Harbor

UK G-Cloud/IL2

PCI DSS

(Type II)

Page 28: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key
Page 29: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key
Page 30: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key
Page 31: Microsoft - NERCOMP€¦ · Microsoft Enterprise Mobility Suite Microsoft Azure Rights Management service Information protection Connection to on-premises assets Bring your own key

Cost Savings Opportunity