Action Points
The below summarises recommended important points to act upon, taken from the entire security report. Where possible you should aim to make as many of the items below show as a green thumbs up. If due to required legacy compatibilty you are unable to fully address all points then you should tightly control and document anything that can't be changed for compliancy purposes. Action points are colour / icon coded for ease of use. A green thumbs up requires no action on your part. A red thumbs down represents a significant security / misconfiguration issue and should be addressed. An amber pointing finger should still be addresed but may be of less significance in comparison to a thumbs down. A blue 'info' icon is not necesarily a concern but is something that you need to be aware of.
Unified Audit Log
The Unified Audit log is enabled
Password Expiry Policy
The organisation password expiry policy is set to Never Expire
OAuth2
OAuth2 (Modern Authentication) is enabled in the tenant
Active Sync
Active Sync is enabled for at least one account in the tenant
POP
No accounts in the tenant are using POP to access email
IMAP
No accounts in the tenant are using IMAP to access email
MAPI
MAPI is enabled for at least one account in the tenant
SMTP
SMTP is enabled for at least one account in the tenant
MFA Conditional Access Policy
All configured conditional access policies that enforce MFA are enabled
MFA Conditional Access Policy Exceptions
A conditional access policy has exceptions
Domain Verification
All registered domains are verified in Microsoft 365
DKIM Status
All registered domains have DKIM enabled.
Azure AD App creation
Azure applications are registered in your Azure AD
Strong Password Requirement
No users found with strong password enforcement disabled
No password expiry
Users found with Password expiry disabled but MFA enabled
Global Admins
Multiple global admins detected
Admin Multifactor Authentication
All Admins are using MFA
User Multifactor Authentication
All users are using MFA
Blocked users
No blocked users in the tenant
License allocation
Licenses are allocated that are not present in the tenant
License usage
There are unused licenses in the tenant
Delegated mailbox access
There are users with delegated mailboxes in the tenant
Microsoft 365 Mail Users
Microsoft 365 Mail Users exist in the tenant
Groups with external members
Mail enabled groups exist with external members
External Forwarding
Users with external forwarders exist in the tenant
External Transport Rules
Externally forwarding transport rules were found
External inbox Rules
No externally forwarding inbox rules were found.
Conditional Access Policies
Enabled conditional access policies were found.
Conditional Access Policies
Disabled conditional access policies were found