Impress Your Clients and Improve Security with Augmentt’s 100-Point Security Audit

Table of Contents

Your clients may not be mechanics, but they understand the importance of regular inspections for their cars. The same goes for their IT environments. With Augmentt’s 100-point security inspection, you can deliver a comprehensive report on your client or prospect’s Microsoft 365 setup. This audit covers critical areas like identity, email, and data protection. It quickly identifies security gaps and offers actionable recommendations. Plus, it maps client configurations to CISA SCuBA compliance standards for added confidence.

A 100-Point Microsoft Security Audit: What It Covers

Augmentt’s 100-point audit provides a thorough review of key Microsoft security settings, focusing on three critical areas:

  1. Account and Identity Security
    Ensuring only the right people have access to resources is crucial. The audit checks user permissions, multi-factor authentication (MFA), and role-based access controls, helping to prevent unauthorized access.
  2. Email Security
    Email is a prime target for cyberattacks, including phishing and malware. The audit reviews anti-phishing protocols, email encryption, and malware filtering to ensure secure communication.
  3. Data and File Security
    Protecting sensitive data is vital. The audit examines file permissions, encryption, and data loss prevention policies to ensure data is securely stored and transferred.

By focusing on these key areas, MSPs can address the most significant security risks in their clients’ Microsoft environments.

CISA SCuBA Compliance: Mapping Security to Standards

The 100-point audit now includes CISA SCuBA (Security Configuration Baseline Assessment) compliance mapping. This feature allows MSPs to audit configurations against NIST CSF 2.0, CIS v8.0, and CISA SCuBA standards. It helps MSPs perform compliance assessments that meet the latest regulations. The audit also provides real-time updates on Microsoft Secure Score, enabling continuous monitoring and improvement of security posture.

Simplified Security with 1-Click Security Baselines

After the audit, MSPs can use 1-click Security Baselines to quickly apply recommended security settings. Once approved by the client, the updates are applied, and the Microsoft Secure Score adjusts to reflect the improvements. This saves time and ensures all steps are taken to boost security and maintain compliance, providing ongoing protection with minimal effort.

Enhance Security with Conditional Access and Policy Management

One of the most effective security improvements you can make is through Conditional Access policies. Create policies to enforce MFA, restrict access based on location or device, and ensure only compliant devices connect to client environments. Managing these policies can be complex, but tools like Augmentt’s Policy Manager make it simple. By streamlining policy creation and management, MSPs can roll out strong security measures quickly, reduce risks, and improve client security. Check out our recent blog on how MSPs can use our policy manager to take advantage of conditional access policies.

For MSPs performing M365 security audits (or planning to), Augmentt’s 100-point audit is a handy tool. It covers crucial areas like account security, email protection, and data security, while incorporating the latest CISA SCuBA compliance standards. With 1-click Security Baselines and conditional access policy management, MSPs can easily apply best practices, update configurations, and improve Secure Scores—boosting overall security with minimal effort.

Author
Gavin Garbutt
Co-Founder & Chairman of Augmentt

FAQ

Using our GDAP tool & Magic Link, setting up is easy! You can integrate with your CSP partner portal in minutes
Augmentt uses a combination of Microsoft Secure Score best practices as well as industry standards such as NIST & CIS. You can use the out of box templates to get started right away and even build your own custom templates to match your client requirements.
Out of box, Augmentt comes pre-configured to not be noisy. Very few Microsoft alerts are critical in nature so you will be receiving tickets for account breaches and not minor user log related events. That said, everything is customizable and you can turn alerts on & off to match your clients’ needs.
No. You can choose to schedule alerts to any stakeholder you want and at the frequency you want or manually download reports when you need them.
Regardless of how MFA is managed across your tenants, we have you covered. Augmentt supports Conditional Access Policies, Security Defaults, Entra ID per user (Legacy) MFA as well as 3rd party MFA services like DUO.
No. You can use Augmentt to monitor and manage all clients regardless of their licensing. For environments with no premium licensing you can still provide alerts and monitoring for account breaches and configure security best practices. For environments with premium licensing, you can leverage Microsoft’s premium alerts and premium security configurations such as Conditional Access Policies.
Augmentt is one of the few vendors SOC 2 Type II, and GDPR compliant.
Site licenses to make sure you can deliver standardized service across all clients very affordably.

SUBSCRIBE for more resources

Related Content

Policy Sprawl Is Killing MSP Efficiency
Policy sprawl is quietly draining your margins, creating security gaps, and eroding client trust. The good news? Standardization is the cure.
Does Microsoft Secure Score Tell the Whole Story?
Do you have a complete understanding of your security? See why MSPs need to understand the role licensing plays in Secure Score results.
Top 10 M365 Security Best Practices for MSPs
Here are the top M365 security best practices to help you enhance protection, ensure compliance, and stay ahead of emerging threats.