Security Score
Below average, attention needed
Demo Company
democompany.onmicrosoft.com
Modern MFA
All users protected
Total Users
165
Guest Users
34
CA Policies
6
Summary
Category Breakdown
Security posture by service area
Identity & Access
Entra ID Security
Email Security
Exchange Online
Threat Protection
Microsoft Defender
Teams & Meetings
Microsoft Teams
File Sharing
SharePoint & OneDrive
Apps & Automation
Power Platform
Device Management
Microsoft Intune
Data Governance
Microsoft Purview
Security Findings
3 issues can be auto-fixed
Save hours of manual work with one-click automated remediation
Legacy authentication not blocked
No Conditional Access policy blocks legacy authentication protocols. 142 users may be using outdated authentication methods.
Suspicious OAuth apps detected
2 applications with suspicious permission patterns detected. These apps have sensitive permissions but lack verified publisher status.
MFA not enforced for all users
23 of 165 users (14%) do not have MFA enforced. These accounts are vulnerable to credential-based attacks.
Review Global Administrator count
4 Global Administrator accounts detected. While within limits, consider using least-privilege roles.
User consent to apps enabled
User consent is enabled, allowing users to grant OAuth permissions to third-party apps without admin review.
Recent OAuth grants need review
1 OAuth permission grant in the last 30 days. Review to ensure these are legitimate business applications.
External forwarding allowed
External mail forwarding is not blocked. 3 mailbox forwarding rules sending mail to external addresses.
Synced privileged accounts detected
2 accounts with privileged roles are synced from on-premises Active Directory, increasing attack surface.