|
The company should invest in a VPN that uses 2FA ( Microsoft authenticator and Cisco AnyConnect if you have Azure AD) and host documentation on prem. Force people to use RDP after connecting to VPN to get to their workstations that are still on-site. That way, transfer of documents is still internal and anyone who needs access will need 2FA and VPN access. Block VPN access using security groups and mac ID if there aren't a lot of you.
|