RKRizwan Khan
← Back to all projects

Prinovis Ltd. & Co. KG · Security & Recovery · October 2011 — November 2011

Prinovis Ltd. & Co. KGWindows Security Consultant

I taught and tested Windows security mechanisms, from EFS and certificates to BitLocker and ADMX GPOs.

Organisation
Prinovis Ltd. & Co. KG
Period
October 2011 — November 2011
Role
Windows Security Consultant
Focus
Security & Recovery
Prinovis Ltd. & Co. KG: Abstract infrastructure illustration for the Prinovis Ltd. & Co. KG engagement

Situation

IT staff needed a practical understanding of new Windows 7 features, PowerShell and the secure use of encryption, certificates and group policies.

Constraints

  • Changes within an already established IT environment
  • Short, clearly scoped engagement
  • Internal system and operating details remain confidential

My scope of responsibility

I ran training sessions and built a test lab for security mechanisms, custom ADMX templates and group policies.

  • I trained IT staff on Windows 7, PowerShell, EFS and certificates.

Documented scope of work

Key decisions

Demonstrate security features hands-on in a controlled lab. Encryption and policies are only used securely once administrators can see impact, recovery and misconfiguration for themselves.

  1. I set up a BitLocker test lab and demonstrated secure usage scenarios.
  2. I created GPOs with custom ADMX templates.

Technology in use

Windows 7

Windows 7 was part of the documented toolset in this Security & Recovery engagement.

PowerShell

PowerShell was part of the documented toolset in this Security & Recovery engagement.

EFS

EFS was part of the documented toolset in this Security & Recovery engagement.

BitLocker

BitLocker was part of the documented toolset in this Security & Recovery engagement.

Certificates

Certificates was part of the documented toolset in this Security & Recovery engagement.

ADMX

ADMX was part of the documented toolset in this Security & Recovery engagement.

Evidence and limits

The team gained a practical foundation for the controlled use of core Windows security features.

Role
Windows Security Consultant
Period
October 2011 — November 2011

Lesson from the engagement

Security training only convinces once administrators have worked through protection and recovery in the lab themselves.

Confidentiality note: Internal architecture and operating data of this engagement are not published.

Related case studies

Planning a demanding change to your Microsoft infrastructure?

View Active Directory & Recovery as a service Discuss your project