Back to portfolio
Limiting user access to only what’s necessary is key to minimizing risk. MD2net uses role-based access control (RBAC) and security groups to enforce the principle of least privilege across Microsoft 365, network shares, and cloud platforms.
Category
Security Compliance
Client
Dental Clinic-Moreno Valley CA
Date
Sep 1, 2024
Problem
A construction company granted full access to shared drives and cloud folders for all users. When one employee’s account was compromised, sensitive project data was exposed and altered without detection.
Solution
MD2net restructured their file permissions using group-based access in Microsoft 365 and SharePoint. We implemented a review schedule for permission audits and removed legacy access. As a result, access is now controlled by job role, limiting exposure and meeting industry compliance standards.