Audit and Assessment Time?

Audit and Assessment Time?

So it is a new year, so what now? Back to work...I hear the sighs... I think I might be making them too. 

With most of us still working either in a limited capacity, odd days at the office, or even full remote, now is a good time to audit and assess security controls and protection. Just yesterday (Monday, January 4th, 2021), the entire United Kingdom went back into full lock-down again.

No alt text provided for this image

It could happen anywhere, causing more potential security issues for already strained IT Teams, who almost overnight deployed new technology. As we all know, rushing any application or service deployment can result in a lack of security. 

We have all heard the phrase "Security as an after-thought." Ask yourself the question, are you in "proactive" or "reactive" security mode?

No alt text provided for this image

If you are in the reactive mode, then maybe it is time to review and assess what you have. For example, do you know what security controls are in place for Microsoft Teams, SharePoint Online or even OneDrive for Business? Do you know where organizational data is shared? If you wish you know the answers to these questions and, of course, many more, then now is the time to perform an Audit and Assessment of your Security Controls within Microsoft 365 / Office 365.

An assessment needs to cover all areas of Microsoft 365 / Office 365, including:

  1. Current data and content protections
  2. Current account protections
  3. Current conditional access policies
  4. Current edge/perimeter controls and services
  5. Current external access and controls
  6. Current mobile device protection and controls

Reviewing these and then matching them against industry standards, regulations, and best practices will increase your security posture.

If you need some help, then reach out here: https://www.shareplicity.com/reach-out.html



 


要查看或添加评论,请登录

Liam Cleary的更多文章

  • CoPilot for Microsoft 365 Privacy

    CoPilot for Microsoft 365 Privacy

    Microsoft has taken a significant step forward by introducing CoPilot for Microsoft 365. This AI-powered technology…

  • Microsoft 365 CoPilot Security

    Microsoft 365 CoPilot Security

    Copilot for Microsoft 365 adheres to Microsoft's comprehensive standards in security, compliance, and privacy. Its…

  • How many US-CERT security vulnerabilities recorded for 2020?

    How many US-CERT security vulnerabilities recorded for 2020?

    Before Christmas, I posted a poll on LinkedIn, asking if you knew how many Security Vulnerabilities US-CERT recorded…

  • Survey Update

    Survey Update

    A while back, I posted a survey asking about implementing Security controls. I thought it would be fun to review the…

  • Will 2021 be better?

    Will 2021 be better?

    Firstly, Happy New Year!! and welcome to 2021. Everyone is glad 2020 is done and behind us, and we are now all looking…

  • Is implementing Security Controls complicated, or is it a perceived complication?

    Is implementing Security Controls complicated, or is it a perceived complication?

    I have asked myself this question multiple times. Every time I perform a Microsoft 365 Security Assessment or Review…

  • What is Azure Sentinel?

    What is Azure Sentinel?

    Microsoft Azure Sentinel is a tool designed for security operation teams. It is a security information event management…

  • Need to know if your organization is part of the most recent hack?

    Need to know if your organization is part of the most recent hack?

    If so, then check out how to use SolarWinds Post-Compromise Hunting within Azure Sentinel. The Microsoft Threat…

  • What is Microsoft Defender for Identity?

    What is Microsoft Defender for Identity?

    The Microsoft Defender for Identity tooling, formerly known as Azure ATP, is a cloud-based security solution. The…

  • Should you use CIS Benchmarks for Microsoft 365?

    Should you use CIS Benchmarks for Microsoft 365?

    My daily work involves reviewing Microsoft 365 Tenants and recommending specific Security Configurations and changes…

社区洞察

其他会员也浏览了