Set IP boundaries
Security Settings Admin focuses on configuring global security settings, IP allowlists, tenant-wide MFA, and device compliance rules. In AWRA, security and compliance are built into every level: from authentication and permissions to log files and recovery mechanisms.
The main objective is risk control. System owners and security teams should know how to prevent drift, recover from incidents, and verify that actual access matches policy definitions.
In practice, a tenant administrator updates the IP allowlist, restricts login hours, sets device trust policies, and configures retention parameters.
Security configuration path
Evaluate
Identify required IP boundaries, MFA rules, and device requirements.
Update
Configure rules in the global security settings console.
Test
Verify that access is restricted without blocking valid users.
Publish
Apply settings and monitor access logs for exceptions.
Control model
- Access and recovery rules should always reflect policy agreements.
- Least privilege is a habit, not a one-time project.
- Incident response needs clear ownership and evidence capture.
- Unusual signals should trigger immediate review and investigation.