Information
Restrict guest being able to invite other guests to collaborate with your organization.
Rationale:
Restricting invitations to administrators ensures that only authorized accounts have access to cloud resources. This helps to maintain 'Need to Know' permissions and prevents inadvertent access to data.
NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.
Solution
From Azure Console
Go to Azure Active Directory
Go to External Identities
Go to External collaboration settings
Set Guests can invite to No
Default Value:
By default, Guests can invite is set to Yes.