5.1.2.6 Ensure 'LinkedIn account connections' is disabled

Information

LinkedIn account connections allow users to connect their Microsoft work or school account with LinkedIn. After a user connects their accounts, information and highlights from LinkedIn are available in some Microsoft apps and services.

Rationale:

Disabling LinkedIn integration prevents potential phishing attacks and risk scenarios where an external party could accidentally disclose sensitive information.

Impact:

Users will not be able to sync contacts or use LinkedIn integration.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

To disable LinkedIn account connections:

Navigate to Microsoft Entra admin center https://entra.microsoft.com/.

Click to expand Identity > Users select User settings.

Under LinkedIn account connections select No.

Click Save.

Default Value:

LinkedIn integration is enabled by default.

See Also

https://workbench.cisecurity.org/benchmarks/15279

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, 800-53|CM-7, CSCv7|13.3

Plugin: microsoft_azure

Control ID: f906daf8f283c929cd8a388876bdd80226cdbf1815f0a1a28f93ff00da31d5ab