5.13 Ensure Microsoft 365 Cloud App Security is Enabled

Information

Enabling Microsoft 365 Cloud App Security gives you insight into suspicious activity in Microsoft 365 so you can investigate situations that are potentially problematic and, if needed, take action to address security issues.

Rationale:

You can receive notifications of triggered alerts for atypical or suspicious activities, see how your organization's data in Microsoft 365 is accessed and used, suspend user accounts exhibiting suspicious activity, and require users to log back in to Microsoft 365 apps after an alert has been triggered.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

To enable Microsoft 365 Cloud App Security, use the Microsoft 365 Admin Center:

Select Security and Compliance.

Select Alerts.

Select Manage advanced alerts.

Check Turn on Microsoft 365 Cloud App Security.

Click Go to Microsoft 365 Cloud App Security.

See Also

https://workbench.cisecurity.org/files/3433