Truth in IT
    • Sign In
    • Register
        • Videos
        • Channels
        • Pages
        • Galleries
        • News
        • Events
        • All
Truth in IT Truth in IT
  • Data Management ▼
    • Converged Infrastructure
    • DevOps
    • Networking
    • Storage
    • Virtualization
  • Cybersecurity ▼
    • Application Security
    • Backup & Recovery
    • Data Security
    • Identity & Access Management (IAM)
    • Zero Trust
    • Compliance & GRC
    • Endpoint Security
  • Cloud ▼
    • Hybrid Cloud
    • Private Cloud
    • Public Cloud
  • Webinar Library
  • TiPs
  • DRAW

Rubrik: M365 Cyber Resilience: What MSPs Are Missing

Rubrik
09/23/2026
0 (0%)
Share
  • Comments
  • Download
  • Transcript
Report Like Favorite
  • Share/Embed
  • Email
Link
Embed

Transcript


Hey, thanks so much for having me. From M365 management to cyber resilience, the next evolution for MSPs. M365 management is table stakes for most MSPs today. What's driving the shift towards cyber resilience? Yeah, great question. If you think about how long Microsoft 365 has been around or how the Microsoft infrastructure in general has been around from a collaboration perspective, organizations are facing a big challenge in that they've been using it for so long that they probably don't know for the most part what exists inside of the environment and thus really what their risk profile is as it relates to the application. So now they're kind of forced with having to understand what would it make up or how would they think about a minimally viable company if a data breach were to happen. What we're seeing within Rubrik is that these attacks are happening at the identity layer and one of the first things they're going after is 365. And because we haven't gone through and understand what the data is, it makes that attack surface that's much more broad. And understanding what has actually been touched or impacted is a significant challenge. So it's really now become table stakes to have a mechanism in place from a cyber resiliency perspective to be able to build back their minimally. So when an MSP says we manage Microsoft 365, what's typically missing from the conversation? Yeah, so management to me is, okay, well we have mechanisms to be able to maybe help you provision sites or grant access and those kinds of things. What really is missing is what is the practice or what is the recovery strategy should there be a data loss event. And historically, managing 365 meant, well, we'll give you mechanisms to be able to manage a recycle bin or create a retention policy or implement an archive. But the conversations now really need to be around, well, what's the data recovery plan? Because if you look at the shared responsibility within Microsoft, there isn't this really standard ability to recover data or recover data in mass. So when you talk about managing the environment for a customer or managing 365 as a whole, the whole data recovery component now needs to be brought in place. Who are the stakeholders? How do you think about critical data? And what is the strategy should there be some kind of breach that were to take place? For an MSP that's ready to make that shift, where should they start? Yeah, that's a really, really great question. So it really starts with just asking some more questions of your customers and understanding how they're utilizing 365. Is it tied into critical business processes? Is it something that without it could impact and have downstream impacts? Are there things that you're utilizing from maybe a Dynamics 365 perspective or Power Platform or other integrations that would be detrimental to an organization should the service be not available or data not being involved? So I think it's just really asking questions and learning more of how organizations rely on the 365 infrastructure day to day. Obviously, us at Rubrik have a tremendous amount of experience and knowledge around what those questions are and how to position those questions within different individuals within a corporation. C-level executives may have different perspectives than an IT director, etc. So I think it's really key to understand some of those things as it relates to usage. And even if an organization, let's say, would say, well, we wouldn't really consider Microsoft 365 a Tier 1 or a Tier 0 application, that may not be the case if you peel back the onion a little bit and ask them more about what would be their control and command and communication mechanisms should there be an outage. You'll find that most times that's going to be Microsoft 365. So even if it's not going to be something that is application specific or dependent, it's something that is very critical as it relates to the communication or orchestration of activities through a cyber event. So looking ahead, where do you see the biggest opportunities for MSPs that embrace cyber as resilience? I think the opportunity is massive and significant. You know, you can be that trusted advisor that organizations are looking for. The attack landscape within 365 is, I think, more dire than ever. And companies are looking for ways to be led and understand, how can I build this into my practice or build this into my requirements from an MSP? Because, again, if you think about what makes up a minimally viable company, collaboration applications in 365 are definitely going to be a part of that. So it's going to allow you to really set yourself apart and ask more questions other than, well, what's your strategy from a data recovery perspective? More as, you know, talk to me about how 365 is utilized. And if you really understand their business, if they're a manufacturing organization or a healthcare organization or finance, how are things kind of tied in from a Microsoft 365 perspective? As you provision SharePoint sites, are you utilizing other plugins to feed data in? What are some of the dependencies you think that exist within that? And if you were to have an outage or have a data loss, who would you prioritize in terms of recovery? These are very insightful questions that can really position you in a unique way that can really see and open a significant amount of opportunities, not only from a licensing perspective, but kind of managing the overall infrastructure and experience for your customer. Eddie, thank you. You have it from Eddie Wasowski, our VP at Rubrik. Eddie, thanks for joining. I'm Nawaz Ali. Thanks for joining MSP Anspruch. Thanks so much.

TL;DR

  • Microsoft 365 management is now table stakes for MSPs — cyber resilience, including data recovery planning and breach response, is the next required capability.
  • Attacks are increasingly targeting the identity layer and M365 first, and most organizations lack visibility into their own data environment, widening the attack surface.
  • MSPs should ask deeper discovery questions about how customers rely on M365, including integrations with Dynamics 365, Power Platform, and SharePoint, to surface hidden dependencies.
  • Even organizations that don't classify M365 as a Tier 0 application will likely depend on it for communication and coordination during a cyber event, making resilience planning essential.

Summary

In this episode of MSP Unscripted, Rubrik VP Eddie Wlazlowski joins host Nawaz Ali to make the case that Microsoft 365 management has become table stakes — and that cyber resilience is the next critical layer MSPs must deliver. Wlazlowski argues that most organizations have used M365 long enough that they no longer have clear visibility into what data exists in their environment, making their risk profile difficult to assess. Attacks are increasingly targeting the identity layer and going after M365 first, and without a structured data recovery plan, the attack surface remains dangerously broad. He draws a sharp distinction between traditional M365 management — provisioning, access control, retention policies — and true cyber resilience, which requires a defined recovery strategy, stakeholder alignment, and an understanding of what constitutes a minimally viable company after a breach. For MSPs ready to evolve, Wlazlowski recommends starting with deeper customer discovery: understanding how M365 is embedded in business processes, what downstream dependencies exist across Dynamics 365, Power Platform, and SharePoint integrations, and who would be prioritized in a recovery scenario. He notes that even organizations that don't classify M365 as a Tier 0 application will almost certainly rely on it for communication and coordination during a cyber event — making it critical regardless. MSPs that embrace this advisory posture, he concludes, can differentiate themselves significantly and unlock new licensing and managed service opportunities.

Chapters

0:00 - Introduction
0:13 - Why Cyber Resilience Is Now Required
1:16 - Gaps in Traditional M365 Management
2:20 - How MSPs Should Start the Shift
3:58 - Opportunities for MSPs in Cyber Resilience

Key Quotes

0:50 "What we're seeing within Rubrik is that these attacks are happening at the identity layer and one of the first things they're going after is 365."
1:32 "What really is missing is what is the practice or what is the recovery strategy should there be a data loss event."
1:54 "If you look at the shared responsibility within Microsoft, there isn't this really standard ability to recover data or recover data in mass."
4:12 "The attack landscape within 365 is, I think, more dire than ever."

FAQ

What's the difference between managing Microsoft 365 and delivering cyber resilience?

Managing M365 typically covers provisioning, access control, retention policies, and archive management. Cyber resilience goes further — it requires a defined data recovery plan, stakeholder identification, critical data classification, and a strategy for restoring operations after a breach or data loss event.

Where should an MSP start when shifting toward a cyber resilience offering?

Start with deeper customer discovery. Ask how M365 is embedded in business processes, what integrations exist with Dynamics 365 or Power Platform, and who would be prioritized in a recovery scenario. Understanding business dependency on M365 — even for organizations that don't classify it as Tier 0 — is the foundation for building a differentiated resilience practice.


Categories:
  • » Webinar Library » Rubrik
  • » Data Protection » Backup & Recovery
  • » Cybersecurity » Cloud Security
  • » Data Protection
Channels:
News:
Events:
Tags:
  • Data Protection
  • Cloud Security
  • Backup & Recovery
  • Best Practices
  • Interview
  • Microsoft 365 security
  • Cyber resilience
  • MSP strategy
  • Data recovery planning
  • Identity-layer attacks
  • Shared responsibility model
  • Minimally viable company
  • M365 integrations
Show more Show less

Browse videos

  • Related
  • Featured
  • By date
  • Most viewed
  • Top rated
  •  

              Video's comments: Rubrik: M365 Cyber Resilience: What MSPs Are Missing

              Industry Events (Sponsor Hosted)

              • Sep
                29

                Embracing AI Adoption While Ensuring Robust Security Measures

                09/29/202612:00 PM ET
                • Oct
                  15

                  Risk in Real Time Demo Series: Virtual Patching: Protection at the Speed of Exploitation

                  10/15/202611:00 AM ET
                  • Oct
                    20

                    Harnessing Data Governance for AI with Cyera and Snowflake

                    10/20/202611:00 AM ET
                    More events

                    Upcoming Webinar Calendar

                    • 09/29/2026
                      12:00 PM
                      09/29/2026
                      Embracing AI Adoption While Ensuring Robust Security Measures
                      https://www.truthinit.com/index.php/channel/2092/embracing-ai-adoption-while-ensuring-robust-security-measures/
                    • 09/30/2026
                      04:00 AM
                      09/30/2026
                      AI Command Center: Enhanced Visibility and Control in Your Operations
                      https://www.truthinit.com/index.php/channel/2024/ai-command-center-enhanced-visibility-and-control-in-your-operations/
                    • 10/15/2026
                      11:00 AM
                      10/15/2026
                      Risk in Real Time Demo Series: Virtual Patching: Protection at the Speed of Exploitation
                      https://www.truthinit.com/index.php/channel/1372/risk-in-real-time-demo-series-the-autonomous-era-orchestrating-a-resilient-enterprise/
                    • 10/20/2026
                      11:00 AM
                      10/20/2026
                      Harnessing Data Governance for AI with Cyera and Snowflake
                      https://www.truthinit.com/index.php/channel/2137/harnessing-data-governance-for-ai-with-cyera-and-snowflake/
                    • 10/27/2026
                      01:00 PM
                      10/27/2026
                      The HUMAN Experience: Real-Time Insights into Page Intelligence
                      https://www.truthinit.com/index.php/channel/2139/the-human-experience-real-time-insights-into-page-intelligence/
                    • 11/19/2026
                      01:00 PM
                      11/19/2026
                      360View: Govern, Secure & Recover Your Microsoft 365 Environment
                      https://www.truthinit.com/index.php/channel/2076/360view-govern-secure-recover-your-microsoft-365-environment/
                    Truth in IT
                    • Sponsor
                    • About Us
                    • Terms of Service
                    • Privacy Policy
                    • Contact Us
                    • Preference Management
                    Desktop version
                    Standard version