Insights
Notes from running Entra ID for other people.
Short, specific and free of vendor adjectives. If an article does not tell you something you can check in your own tenant this week, it should not be here.
Enterprise IT
Delegation, offboarding, licensing and the audit trail inside a single Entra ID tenant.
For groups and multi-company organisations →
For IT and security leaders
No, NIS2 does not yet apply in Norway
A great deal is sold on NIS2 in the Norwegian market.
19 Aug 2026 · 7 min
For IT and security leaders
After the acquisition: multi-tenant is not a transitional phase
The integration plan after an acquisition always has the same item: "Consolidate IT platform, Q3." Five years later the group still has eleven tenants.
19 Aug 2026 · 4 min
For IT and security leaders
License leakage
Group-based licensing is one of the better things Microsoft has built: put the user in the right group, and the license follows.
19 Aug 2026 · 5 min
For IT and security leaders
The default setting is that anyone can invite
A concrete question to bring to the next management meeting: who in our organization can invite an external person into our Teams environment?
19 Aug 2026 · 5 min
For IT and security leaders
Three device registries, no synchronization
Open the device list in Entra ID at a company that has run Microsoft 365 for five years. Count the number of devices.
19 Aug 2026 · 4 min
For IT and security leaders
Group hygiene is now budget control
Until now, an incorrect group membership has been an access problem.
19 Aug 2026 · 6 min
For IT and security leaders
Script debt
Every IT department that has run Microsoft 365 for more than three years has one.
19 Aug 2026 · 5 min
For IT and security leaders
The audit trail you think you have
The auditor's question is always the same: Who gave this user access to this resource, when, on what grounds, and who approved it?
19 Aug 2026 · 5 min
For IT and security leaders
Delegation in Entra ID: PIM, administrative units and custom roles
The question always comes in the same form: "The service desk has to be able to reset passwords for its own department, and the line managers have to be able to order access for new hires — but…
19 Aug 2026 · 5 min
For IT and security leaders
Disabled is not removed
The standard offboarding routine in a Norwegian company looks like this: HR reports the last day of employment, the service desk clears the "Account enabled" checkbox in Entra ID, the case is closed.
19 Aug 2026 · 5 min
Managed service providers
Running Entra ID for many client tenants: delegation, queues, chargeback and proof.
For managed service providers →
For managed service providers
The audit trail is no longer internal — it is something your clients buy
Cyber insurance questionnaires, your clients' auditors and tightening EU requirements now put the same question to the MSP: prove who had access, who approved, and what was done.
19 Aug 2026 · 4 min
For managed service providers
Copilot credits turn group hygiene into a budget question
Microsoft's spending policies for Copilot credits are governed exclusively through security groups.
19 Aug 2026 · 4 min
For managed service providers
Self-service for the client's employees is the service desk's best cost cut
A large share of the tickets in an MSP's queue should never have become tickets: lookups, small changes, requests with a known shape.
19 Aug 2026 · 4 min
For managed service providers
Chargeback that adds up: license and cost reporting per client tenant
Every month, someone at your MSP builds an invoice out of exports from three systems and a spreadsheet.
19 Aug 2026 · 4 min
For managed service providers
First line can resolve identity tickets itself — if nobody has to grant it rights first
The most expensive flow in an MSP is the ticket waiting for someone with access.
19 Aug 2026 · 4 min
For managed service providers
"Don't we already have this in our Entra license?" — the answer for MSPs
Your clients are going to ask the question, and Microsoft's tools deserve an honest answer.
19 Aug 2026 · 4 min
For managed service providers
The gap between "approved" and "executed" is where the audit fails
Most MSPs have an approval process. Very few can prove that what was executed was exactly what was approved. That gap is called manual re-keying — and it can be closed.
19 Aug 2026 · 4 min
For managed service providers
A tenant switcher is not multi-tenant architecture
Plenty of tools let you switch between tenants. Very few are built for a world where a hundred tenants is the normal state.
19 Aug 2026 · 4 min
For managed service providers
Standing admin rights are an MSP's biggest concentration risk
Every technician holding permanent Global Administrator in a client tenant is an attack path into all of your clients at once.
19 Aug 2026 · 4 min
For managed service providers
The employee didn't stop existing when you disabled the account
Offboarding in Entra ID is not about disabling an account.
19 Aug 2026 · 4 min
Critical infrastructure
Access governance where a regulator asks the questions: power, oil and gas, maritime and the Digital Security Act.
Enterprise and regulated environments →
For CISOs and security officers
When the tenant is compromised: emergency access, break-glass and continuity in identity administration
Open your organisation's ICT contingency plan and find the section on what happens during a serious identity compromise.
19 Aug 2026 · 7 min
For CISOs and security officers
Script sprawl, service accounts and key-person risk: the automation nobody has visibility into
In almost every IT department in Norwegian critical infrastructure there is a layer of automation that appears in no architecture diagram: PowerShell scripts on individual administrators'…
19 Aug 2026 · 6 min
For CISOs and security officers
Maritime cyber resilience: IACS UR E26/E27, the ISM Code, and the identities between ship and shore
On 19 December 2025, the Norwegian Maritime Authority was designated sector supervisory authority for the Digital Security Act (digitalsikkerhetsloven) for shipping companies.
19 Aug 2026 · 7 min
For CISOs and security officers
From decision to executed change: the traceability requirement in petroleum regulation, applied to the identity platform
A common question from IT leaders in petroleum activities: which section of the Norwegian Ocean Industry Authority's regulations governs ICT security?
19 Aug 2026 · 7 min
For CISOs and security officers
Access after departure in a rotation and shift organisation
Ask an IT manager what happens when an employee leaves, and the answer is usually: "the account gets deactivated." That's usually true.
19 Aug 2026 · 7 min
For CISOs and security officers
Vendor and contractor access: the guest accounts nobody owns
Run a count of guest users in your tenant. Not active guests — all guests. Then two questions per account: who invited it in, and has that person signed in during the last ninety days?
19 Aug 2026 · 7 min
For CISOs and security officers
The IT/OT boundary: what identity governance in Entra ID can and cannot do for the operational control system
Any vendor who tells you their identity product "secures the OT environment" is selling something they don't have.
19 Aug 2026 · 6 min
For CISOs and security officers
The Power Supply Preparedness Regulations chapters 6 and 7: access governance as a supervisory subject
The Power Supply Preparedness Regulations (kraftberedskapsforskriften, FOR-2012-12-07-1157) are issued by the Norwegian Water Resources and Energy Directorate (NVE) pursuant to the Energy Act…
19 Aug 2026 · 7 min
For CISOs and security officers
The Digital Security Act is in force — and it is not NIS2. What that means for energy and transport right now
A great many Norwegian undertakings believe they are regulated by NIS2. They are not.
19 Aug 2026 · 7 min
For CISOs and security officers
Standing administrator privileges are the structural weakness in the power industry's identity platform
Most Norwegian energy companies have a tenant in Microsoft Entra ID where somewhere between five and thirty people hold some form of permanent elevated privilege.
19 Aug 2026 · 8 min
Practice
Short notes from running Entra ID for other people.
For managed service providers
One console, many tenants: what MSPs actually need from Entra ID tooling
Tenant switching, delegation per client, an order queue that knows whose change it is, and cost allocated per client. Everything else is secondary.
20 Aug 2026 · 6 min
For service desk leads
Offboarding that actually finishes
Accounts still enabled months after the leaving date are the most common finding in a first directory scan. The cause is almost never carelessness.
20 Aug 2026 · 5 min
For IT managers
Standing admin rights are a reporting problem before they are a security problem
Permanent admin roles rarely cause the breach. They make it impossible to explain what happened afterwards — and that is what an auditor asks about.
20 Aug 2026 · 6 min
Reading is not the point. Your own tenant is.
Every article here describes something you can measure in read-only. The free plan does the measuring for you.