Microsoft Edge Adds Secure Business Password Management

▼ Summary
– Microsoft Edge’s secure password deployment feature is now generally available, allowing enterprise employees to share passwords securely within their organization.
– The feature is accessible for Microsoft 365 Business Premium, E3, and E5 users and requires admin roles to deploy encrypted passwords to specific user groups.
– Admins can add, update, or revoke credentials via the Microsoft 365 admin center, and passwords automatically appear in users’ Edge work profiles for autofill.
– Passwords are encrypted using Microsoft Information Protection SDK and tied to Entra identities, enforcing access based on organizational policies.
– Admins can restrict password access via browser developer tools using the DeveloperToolsAvailability policy, enhancing security.
Microsoft Edge has introduced a powerful new security feature designed specifically for business environments, enabling organizations to share passwords more securely across teams. This functionality, now generally available, addresses the common workplace challenge of credential sharing while maintaining strict security protocols.
The secure password deployment feature integrates directly with Microsoft Edge for Business, providing administrators with tools to distribute encrypted credentials to authorized personnel. This eliminates risky practices like sharing passwords through unsecured channels such as email or physical notes. Available for Microsoft 365 Business Premium, E3, and E5 subscribers, the feature requires administrative privileges to ensure controlled access.
Many companies struggle with employees inadvertently exposing login details when sharing access to critical systems. Microsoft’s solution streamlines this process by allowing IT teams to push encrypted passwords directly to approved users. Once deployed, credentials appear automatically in employees’ Edge work profiles, ready for autofill on designated websites—without the risk of unauthorized copying or modification.
Administrators can manage this feature through the Microsoft 365 admin center, where they configure policies to assign passwords to specific user groups. The system supports adding, updating, and revoking access as needed, ensuring dynamic control over sensitive data. While passwords populate in the browser for seamless login, they remain protected—users cannot view, edit, or export them unless explicitly permitted.
Security is further reinforced through Microsoft Information Protection SDK encryption, which ties credential access to Entra identities. This means permissions align with organizational policies automatically, removing the need for manual key management. Even if someone attempts to bypass restrictions using developer tools, admins can block such access via policy controls.
By embedding enterprise-grade protection directly into the browser, Microsoft strengthens compliance with Zero Trust principles, safeguarding data from deployment to end-user interaction. IT teams can activate the feature by navigating to the Edge management service in the Microsoft 365 admin center, selecting or creating a policy, and configuring settings under the Secure Password Deployment tab.
This enhancement reflects Microsoft’s commitment to merging convenience with security, offering businesses a smarter way to handle credential distribution while minimizing exposure to breaches. As cyber threats grow more sophisticated, tools like these help organizations stay ahead without compromising productivity.
(Source: Bleeping Computer)