Security for IT Professionals

TMH03 Do this, Not That! 5 Common PKI Implementation Mistakes (And How to Correct Them)

11/19/2026

8:00am - 9:15am

Level: Intermediate

Richard Hicks

Founder and Principal Consultant

Hicks Consulting, Inc.

Active Directory Certificate Services (AD CS) is widely deployed in Microsoft enterprise organizations globally. A common fallacy is that certificates are more secure than usernames and passwords. However, AD CS can be easily misconfigured, resulting in a trivial, near-instant full-domain compromise. This session explores some of the most common configuration errors and mistakes administrators make that sabotage security in their environments.

You will learn:

  • Identify common misconfigurations
  • Techniques to mitigate common privilege escalation attacks
  • Leverage community tools to audit and monitor AD CS security configuration