Zero Trust a Case Study in Device Trust
Details
Business email compromise increasingly relies on stolen authentication tokens, which attackers replay after capturing them through phishing campaigns or malicious browser-based attacks. This session presents a real-world case study of a zero-trust architecture designed to counter that threat. Attendees will see how device certificates deployed through Simple Certificate Enrollment Protocol (SCEP) profiles in Microsoft Intune can be combined with the Okta identity platform, session policies, and conditional access controls to bind authentication session tokens to trusted hardware and mitigate the risk of token replay.
About the Presenter:
Dennis Tuttle is an accomplished information security and technology leader with more than 15 years of experience across cybersecurity, cloud architecture, IT infrastructure, healthcare, financial services, higher education, and insurance. As Information Security Architect at Cross Insurance, he leads strategic initiatives in cloud security, identity and access management, zero trust, security operations, API security, and third-party risk management.
Throughout his career, Dennis has directed complex technology and security transformations, including enterprise cloud deployments, identity management programs, SIEM and privileged access implementations, security automation, and regulatory compliance efforts. In senior technology leadership roles within banking and healthcare, he also guided infrastructure modernization, cybersecurity programs, business continuity, and enterprise technology strategy.
Based in Maine, Dennis brings a practical, business-focused approach to cybersecurity, aligning technical strategy with real-world risk, operational priorities, and organizational goals.
This event will be a live in person event - simultaneously streamed via MS Team - link will be shared the date of the event.
