About Session
This presentation approaches data security from the perspective that identity, permissions, and data access are now the primary attack surface. It examines how Microsoft 365 and file shares accumulate risk over time through excessive access, unmanaged sharing, and limited insight into where sensitive data resides. Rather than focusing on perimeter defenses, the discussion centers on reducing blast radius, improving visibility, and aligning access with business need. The goal is to help security leaders understand how to systematically lower internal exposure risk while supporting modern collaboration and Zero Trust principles.