Skillplan M365 Checklist
2026-07-20 19:25
M365
Checklist Sécurité Microsoft 365
de
en
fr
it
Système En ligne
← Retour aux sections
Mesures de mitigation · Section 5 sur 17
Multi-Factor & Phishing-Resistant Auth
Progression de l'évaluation
0
/ 136 éléments
0%
Conformité jusqu'à présent
0
/ 0 contrôles
0%
Expliquer ce contrôle
Enable phishing-resistant authentication methods (FIDO2 keys, Windows Hello for Business, certificate-based auth) tenant-wide.
Non remplie
Remplie
Accepté
Enforce phishing-resistant MFA for all administrative roles via Conditional Access Authentication Strengths.
Non remplie
Remplie
Accepté
Disable SMS and voice-call MFA methods for any account holding an administrative role.
Non remplie
Remplie
Accepté
Enable Microsoft Authenticator number matching for all users to defeat MFA-fatigue attacks.
Non remplie
Remplie
Accepté
Enable additional context (app name, location) in Authenticator push notifications.
Non remplie
Remplie
Accepté
Run an authentication methods registration campaign to nudge users to Authenticator and away from SMS.
Non remplie
Remplie
Accepté
Audit and remove unused legacy MFA methods (security questions, voice OTP) from all user profiles.
Non remplie
Remplie
Accepté
Run an authentication-strength audit quarterly to confirm no admin role has a weak factor configured.
Non remplie
Remplie
Accepté
Enregistrer et continuer →