Skillplan M365 Checklist
2026-07-20 19:28
M365
Checklist Sécurité Microsoft 365
de
en
fr
it
Système En ligne
← Retour aux sections
Mesures de mitigation · Section 11 sur 17
Defender for Endpoint
Progression de l'évaluation
0
/ 136 éléments
0%
Conformité jusqu'à présent
0
/ 0 contrôles
0%
Expliquer ce contrôle
Enable Tamper Protection for every onboarded device.
Non remplie
Remplie
Accepté
Enable all Attack Surface Reduction (ASR) rules in audit mode first; promote to block after monitoring.
Non remplie
Remplie
Accepté
Onboard every Windows 10/11 and Server 2019+ device into Defender for Endpoint within 7 days of deployment.
Non remplie
Remplie
Accepté
Enable Automatic Investigation and Response with 'Full - remediate threats automatically' for low-risk machines.
Non remplie
Remplie
Accepté
Configure Web content filtering for known malicious and policy-violating categories.
Non remplie
Remplie
Accepté
Enable Device discovery to catch unmanaged devices on the same network as managed assets.
Non remplie
Remplie
Accepté
Require Microsoft Defender Antivirus cloud-delivered protection on every device.
Non remplie
Remplie
Accepté
Restrict AV exclusions to Microsoft-recommended guidance; reject ad-hoc business exclusions without review.
Non remplie
Remplie
Accepté
Enregistrer et continuer →