Skillplan M365 Checklist
2026-07-20 00:25
M365
Microsoft 365 Security Checkliste
de
en
fr
it
System Online
← Zurück zu den Bereichen
Mitigationsmaßnahmen · Bereich 5 von 17
Multi-Factor & Phishing-Resistant Auth
Bewertungsfortschritt
0
/ 136 Elemente
0%
Bisherige Erfüllung
0
/ 0 Kontrollen
0%
Diese Kontrolle erklären
Enable phishing-resistant authentication methods (FIDO2 keys, Windows Hello for Business, certificate-based auth) tenant-wide.
Nicht erfüllt
Erfüllt
Akzeptiert
Enforce phishing-resistant MFA for all administrative roles via Conditional Access Authentication Strengths.
Nicht erfüllt
Erfüllt
Akzeptiert
Disable SMS and voice-call MFA methods for any account holding an administrative role.
Nicht erfüllt
Erfüllt
Akzeptiert
Enable Microsoft Authenticator number matching for all users to defeat MFA-fatigue attacks.
Nicht erfüllt
Erfüllt
Akzeptiert
Enable additional context (app name, location) in Authenticator push notifications.
Nicht erfüllt
Erfüllt
Akzeptiert
Run an authentication methods registration campaign to nudge users to Authenticator and away from SMS.
Nicht erfüllt
Erfüllt
Akzeptiert
Audit and remove unused legacy MFA methods (security questions, voice OTP) from all user profiles.
Nicht erfüllt
Erfüllt
Akzeptiert
Run an authentication-strength audit quarterly to confirm no admin role has a weak factor configured.
Nicht erfüllt
Erfüllt
Akzeptiert
Speichern und Weiter →