Episode
Inside Enterprise Security: AD Tiering & Privileged Access with Viktor Hedberg [MVP - MCT]
- Published
- May 23, 2026
- Duration seconds
- 2810
- Processing state
not_requested
Actions
POST https://stenobird.com/v1/public/podcasts/m365-fm-modern-work-security-and-productivity-with-microsoft-365-7311214/episodes/inside-enterprise-security-ad-tiering-privileged-access-with-viktor-hedberg-mvp-mct/transcription-requests
Idempotently request low-priority transcript generation for this episode.GET https://stenobird.com/podcast/m365-fm-modern-work-security-and-productivity-with-microsoft-365-7311214/inside-enterprise-security-ad-tiering-privileged-access-with-viktor-hedberg-mvp-mct.md
Read the agent-friendly Markdown representation of this episode resource.
Summary
In this episode of the m365.fm podcast, Mirko Peters sits down with cybersecurity expert Viktor Hedberg to explore one of the most critical — and misunderstood — areas of enterprise IT security: Active Directory tiering, privileged access, identity protection, and defending modern hybrid environments. With years of experience in incident response, offensive security, Active Directory hardening, and enterprise defense at Truesec, Viktor brings practical, real-world insights into how organizations can dramatically improve their security posture before attackers exploit their weaknesses. The conversation begins with Viktor sharing his personal journey into cybersecurity. Unlike many traditional security professionals, Viktor did not come from a university background. Instead, he worked his way from helpdesk and system administration into consultancy and incident response, gaining deep technical knowledge of Windows, Active Directory, infrastructure, and enterprise security along the way. That hands-on experience became the foundation for understanding both how to secure systems and how attackers compromise them. WHY ACTIVE DIRECTORY IS STILL A MASSIVE TARGET One of the strongest themes throughout the episode is the fact that Active Directory is far from dead. Despite the rise of Microsoft Entra ID, cloud-first environments, and SaaS adoption, Active Directory still remains the backbone of identity and access management in countless organizations worldwide. Viktor explains why attackers continue targeting Active Directory environments: Cached credentials Password hashes stored locally Kerberos tickets Overprivileged accounts Weak administrative separation Poor tiering implementation Excessive lateral movement opportunities The discussion highlights how many organizations u…