Microsoft 365 Security Readiness Check

No tenant access required

Review your Microsoft 365 security foundations

Check the account, email and recovery controls that commonly determine whether Microsoft 365 is resilient to phishing, account takeover and accidental loss.

01Is MFA enforced for every user, including administrators and shared service accounts?

Identity

02Do administrators use separate, cloud-only privileged accounts for administrative work?

Identity

03Is legacy authentication blocked and are risky sign-ins reviewed?

Identity

04Are access policies appropriate for device health, location and user risk?

Access

05Are SPF, DKIM and DMARC configured and monitored for every sending domain?

Email

06Are SharePoint, OneDrive and Teams external sharing settings reviewed and controlled?

Data

07Are audit logs, security alerts and administrator changes reviewed by a named person?

Detection

08Are retention requirements documented separately from operational backup?

Recovery

09Is important Microsoft 365 data protected by an independent backup with tested restores?

Recovery

This questionnaire does not connect to or scan your Microsoft tenant. A technical review is required to verify configuration.

A practical technology partner

Clear ownership across your whole IT environment

MSP247 brings day-to-day support, security, connectivity and planning together so your team has one accountable route for help.

Whole-environment support

Windows, Mac, iPhone, iPad, Chromebook, servers, networks and cloud services supported as one working environment.

Yorkshire coverage

Responsive remote support with planned on-site assistance across York, Leeds and the wider Yorkshire region.

A clearly agreed scope

Responsibilities, priorities, escalation routes and available response arrangements are explained before service begins.

Security and continuity

Accounts, devices, backups and connectivity resilience are reviewed together instead of as isolated products.

This site uses analytics.