Securing Active Directory with Spencer Alessi

About Show #1035

How secure is your Active Directory infrastructure? While at Zero Trust World in Orlando, Richard chatted with Spencer Alessi about his work helping companies secure Active Directory, making it more difficult for black hats to exploit it for lateral moves during a breach attempt. Spencer talks about the increasing speed of these exploits, making it much harder to block them after the fact, so it's best to make AD too difficult to target. Jake Hildreth's Locksmith tools are a great place to start - free and open source. There are also Microsoft tools and Spencer's own AD Security Resource Kit to help evaluate your AD infrastructure and lock it down!

Links

Recorded March 4, 2026

 

Spencer Alessi is a passionate security practitioner, with the heart of a defender and spirit of a hacker. Spencer's background is in IT and Systems Administration prior to making the transition to security. He leans on these crucial technical skills to help enable clients and security programs to build defensible, vigilant, and practical security programs. Most of Spencer's current efforts are focused on understanding threats, techniques, and methods and then implementing them through technical assessments and analysis. Spencer is Co-Host of The Cyber Threat Perspective podcast and regularly creates blogs & videos.
 

Show Comments

blog comments powered by Disqus