09.08.2022

5 Tips and Tricks to a More Secure Microsoft Cloud Setup

5 Tips and Tricks to a More Secure Microsoft…

If your organisation utilises the Microsoft Office 365 (O365) ecosystem in any capacity, do you recall the last time you performed a security audit on the system? Most companies make use of O365 for key technology services such as emails, document storage, and collaboration, yet believe that it’s safe and secure right out of the box. The fact is that, by default, many security policies are not enabled and require manual configuration to be enforced within your organisation.

Enter Microsoft Secure Score, a feature within Office 365 that provides an overall measurement of your organisation’s security position and allows you to improve your security on the platform. The score varies depending on your setup, but is ranked by a percentage metric. The average score globally is 40%, indicating little actions have been taken to improve their environment, which is quite concerning. Below, we have listed the top 5 changes to make within the platform to enhance your online security.

1. Enforce Multi-Factor Authentication (MFA) for all users and administrators

Sadly, Microsoft admits that the standard implementation out-of-the-box doesn’t have complex security requirements. Enabling MFA is highly recommended and the number one item on our list of security enhancements.

2. Disable Legacy Authentication

By default, Microsoft still allows users to bypass the MFA policy by setting up their own app passwords. However, this should be disabled as it enables external parties to target your passwords and breach accounts.

3. Enable Audit Data Recording

Microsoft does log user actions, but only for a very short time frame until you enable the audit data policies, which will keep logs of user actions indefinitely.

4. Enable User Sign-in Risk Policy

This policy will protect against password cracking and mitigate account breaches in your organisation. It is important to make sure that the organisation also has MFA enabled.

5. Do not expire passwords

It may seem odd but it is recommended that passwords don’t change. If you are changing passwords frequently, standard behaviour is to add another character at the end of the password. It is much better to choose a long, secure password and manage it via your password manager, changing it periodically as opposed to frequently.

Following these steps will have a notable impact on the security of your Microsoft Office environment. If you’d like to know more, don’t hesitate to get in touch.

 
 
  • office365
  • cloud
  • Security Awareness Training

As an IT Professional with over ten years of experience, I pride myself on providing relevant, cost-effective solutions to my clients.

Follow us for more articles and posts direct from professionals on      
  Report
Property

Understanding the Importance and Types of Emergency...

Why Do We Need Emergency Lighting? Emergency lighting plays a critical role in ensuring life safety first in any…
Employment & HR

Labour’s new Employment Rights Bill: challenges employers...

The introduction of Labour’s Employment Rights Bill on 10th October 2024 has created a significant shift in how…

More Articles

Business Management

The Value of a Sustainability Strategy in the Tender Process

In today’s competitive landscape, businesses face increasing pressure to demonstrate their commitment to…
Business Management

Unlocking the Power of Raw Financial Data

At Master of Coin Consulting, we offer independent strategic finance advice to help micro to medium-sized businesses…

Would you like to promote an article ?

Post articles and opinions on Professionals UK to attract new clients and referrals. Feature in newsletters.
Join for free today and upload your articles for new contacts to read and enquire further.