Summer Regulatory Summit eBook
3. Microsoft 365 Hardening
o The Organization should contract for an independent Microsoft 365 Hardening Assessment to evaluate the environment and ensure the Organization has implemented appropriate controls. o Key areas include risk mitigation surrounding Malware
Third-party app access Data loss prevention External sharing Advanced threat protection Permissions
RECOMMENDATION
o CIS adds additional controls and critical elements with each new version so assessment should be conducted on the same concurrence as the CIS versions.
© SBS CyberSecurity, LLC www.sbscyber.com
11
Made with FlippingBook Digital Publishing Software