Pretty much everyone in the industry knows the enterprise security is an uphill battle, but one problem I have encountered on multiple occasions is stopping security being tightened on budget grounds.

2FA is a very good step in the right direction but the tools to implement and manage it are expensive quite why Microsoft has not rolled a basic system into the DC is a mystery to me, as by now the patents must have expired??

