
Behind Cloud-Secure.ai is me, Seán O’Farrell, Principal M365 Consultant with eir business in Dublin, Ireland.
I have over 20 years of experience in IT, and I have worked with Microsoft cloud services since before BPOS became Office 365. Since 2012 nearly all of my professional services engagements have been in Microsoft 365 and Azure security, and today my focus is the Microsoft security stack end to end: Microsoft Entra, Microsoft Defender XDR, Microsoft Purview and the identity, endpoint and data protection controls that tie them together.
More recently my attention has turned to securing and governing AI agents. Agents introduce a class of identity that most organisations are not yet set up to control: non-human, granted delegated permissions, and capable of reaching data at a speed and scale no user ever could. The same disciplines still apply – give each agent a distinct identity, scope its permissions to what it actually needs, keep its data access inside the boundaries your sensitivity labels and DLP policies already define, and make sure its activity lands somewhere you can audit. What changes is that oversprovisioning an agent is far less forgiving than oversprovisioning a person, and shadow AI spreads through an organisation faster than shadow IT ever did.
This blog is where I write up what I learn in the field – product integrations, capability gaps, enforcement paths and the configuration detail that rarely makes it into the official documentation. Over the years clients have found my posts while troubleshooting their own environments, and some vendors have republished them.
You can find me on LinkedIn.
Disclaimer: All posts are my own views and are provided without warranty. They are not affiliated with my employer, Microsoft, or any other vendor whose technologies are mentioned.