Skillplan M365 Checklist
2026-07-20 19:32
M365
Microsoft 365 Security Checkliste
de
en
fr
it
System Online
← Zurück zu den Bereichen
Mitigationsmaßnahmen · Bereich 2 von 17
Entra ID — Identity Foundations
Bewertungsfortschritt
0
/ 136 Elemente
0%
Bisherige Erfüllung
0
/ 0 Kontrollen
0%
Diese Kontrolle erklären
Block legacy authentication protocols (POP, IMAP, SMTP AUTH, EAS basic) tenant-wide via Conditional Access.
Nicht erfüllt
Erfüllt
Akzeptiert
Enable Entra Password Protection with a custom banned-password list aligned with your organization.
Nicht erfüllt
Erfüllt
Akzeptiert
Require all users to register a strong authentication method (Authenticator, FIDO2, or Windows Hello).
Nicht erfüllt
Erfüllt
Akzeptiert
Disable the 'Stay signed in?' prompt across sign-in branding contexts to reduce token persistence on shared devices.
Nicht erfüllt
Erfüllt
Akzeptiert
Set the password expiration policy aligned with NIST 800-63B (no forced rotation, only on suspicion of compromise).
Nicht erfüllt
Erfüllt
Akzeptiert
Configure tenant restrictions v2 to block sign-ins to external tenants from managed devices.
Nicht erfüllt
Erfüllt
Akzeptiert
Investigate and remediate every 'high' sign-in risk event within 24 hours via Entra ID Protection.
Nicht erfüllt
Erfüllt
Akzeptiert
Disable users' ability to invite external guests unless they hold the Guest Inviter role.
Nicht erfüllt
Erfüllt
Akzeptiert
Speichern und Weiter →