Microsoft 365 security for law firms that share files with the other side

Law firms trade documents with clients, co-counsel, and opposing counsel every day. Augmentt sets the sharing and access controls for every firm you manage, proves they are in place, and flags the moment someone loosens them.

No multi-year lock-in. A trial and onboarding that prove it early.

External Sharing ReportWhitmore and Lane LLP
Approved domains
12
Guest users
9
Open links
3
Client domainAllowlisted
Approved
Matter 2291Teams · 3 guests
Review guests
M. LanePartner
CA exclusion
Download PDFSchedule
Branded reports mapped toCIS Microsoft 365ISO 27001NIST CSF
TRUSTED BY HUNDREDS OF MSPS AROUND THE WORLD
Cognoscape
TeamLogic IT
Nextek
Netsurit
All Covered, A Konica Minolta Division
Link
Container
Link 1
Container 1
Group 1000005757
THE PROBLEM

Why law firm tenants need a tighter standard

01

Confidentiality is an ethics duty
Lawyers are expected to make reasonable efforts to prevent unauthorized disclosure of client information. In Microsoft 365, those efforts live in sharing and access settings.

02

Every matter has outside parties
Guests in Teams, external links in OneDrive, and forwarded threads pile up with each case. They rarely get cleaned up when the matter closes.

03

Partners ask for exceptions
A senior partner who travels asks to skip MFA prompts. Once the exception is granted in one firm, it tends to stay.
Frame 1362790123
A black background with a white curved shape in the upper right corner.
Where you are today, and what changes with Augmentt

01

Sharing settings nobody reviews

WITHOUT AUGMENTT

Each firm’s SharePoint was configured once, by whoever set it up, and nobody has checked it since.

Every firm’s external sharing scope, link defaults, and resharing scored against one baseline on one screen.

02

MFA exceptions that become permanent

WITHOUT AUGMENTT

A Conditional Access exclusion for one partner turns into five.

Drift alerts when a control moves off the baseline, with auto-remediation and snoozing built in.

03

Security you can't show the client

WITHOUT AUGMENTT

A corporate client sends a security questionnaire, and the firm asks you to fill it in by Friday.

Exportable posture reporting mapped to CIS Microsoft 365 and NIST CSF, ready to attach.

Why Msps 1.png
What Augmentt covers for law firm clients

Augmentt is a multi-tenant Microsoft 365 security and compliance platform built for MSPs. Connect each firm’s tenant once, then manage sharing, Conditional Access, Teams policy, and reporting from one console.

Approved-domain allowlists

Manage the domains each firm may share with, and the security groups permitted to share out, next to the sharing controls.

Conditional Access and MFA management

Apply the same set of Conditional Access policies to every firm and see each exclusion on one screen.

Teams policy management

Manage Teams policy across every firm from the same console as SharePoint and OneDrive.

Branded security reports

Give each firm a branded report it can attach to a client’s security questionnaire.

MICROSOFT 365 COMPLIANCE REPORTING

One source for the fix and the evidence

Every action your team takes in a firm’s tenant maps back to a recognized standard. When a corporate client sends a security questionnaire or the firm’s insurer asks about controls, export the evidence in a click. When a control needs premium Microsoft licensing, the view says so.
Overlay
Controls mapped to recognized frameworks for every firm you manage
Overlay

Evidence on demand for client questionnaires and insurers

Overlay

Covers Entra ID, Exchange, SharePoint and OneDrive, Teams, Purview, Intune, and Defender

MAPPED FRAMEWORKS
Overlay 1

CIS Microsoft 365

Microsoft 365 configuration benchmark

MAPPED

Overlay

ISO 27001

Information security management
MAPPED
Overlay 1

NIST CSF

Cybersecurity Framework

MAPPED

Overlay

HIPAA

Healthcare privacy and security
MAPPED
Overlay 2

CMMC

Federal contracting and DoD
MAPPED
Overlay 1

Microsoft Secure Score

Microsoft’s security posture measurement

MAPPED

Frame 1362790125
HOW IT WORKS

Three steps to managing law firm tenants at scale

01
Connect the tenants
Magic Link onboarding and GDAP automation connect each law firm client at integration, using granular, least-privilege admin roles instead of standing global admin access.
02
Audit every tenant
Run a Microsoft 365 security audit on every tenant to increase your Microsoft Secure Score, check the standards law firm clients answer to, and see where licensing limits what a client can enforce.
03
Remediate and hold it
Fix loose controls from Augmentt, push the same baseline to every tenant, and let drift alerts tell the team when a client moves off the standard.
FOR YOUR TEAM

What changes for your team

Technicians run the platform every day. Owners build a practice on top of it. One tool that works for the people doing the job and the people pricing it.
Overlay (1)
FOR MSP TECHNICIANS
One screen instead of one admin center per client
See every firm’s sharing and MFA posture without opening a SharePoint admin center per client.
Overlay
Fix a loose control in a click, and get alerted when someone loosens it again.
Overlay
Runs on the GDAP permissions already in place, with no golden tenant to maintain.
Overlay (2)
FOR MSP OWNERS
A billable service instead of an absorbed project
Turn the yearly security review firms ask for into a monthly managed service.
Overlay (3)
Show a client where their posture stands against a standard they recognize, and bill for keeping it there.
Overlay (3)
Hand an auditor, an insurer, or a QBR the same exported evidence your team works from.
What MSPs say

We evaluated four other platforms in the process. Augmentt pretty handily checked all the boxes for us and came out as the clear best option for our customers.

Tim CampbellTim CampbellPractice Director, All CoveredRead the story
Why Msps 1.png
Questions MSPs ask about law firm clients
What Microsoft 365 security settings should a law firm have?

Start with the CIS Microsoft 365 Benchmark: MFA enforced through Conditional Access, external sharing limited to approved domains, link expiration, and limits on resharing. Augmentt audits each of these tenant-level controls on every firm you manage.

Yes. Augmentt manages each tenant individually rather than pushing from a master tenant, so firms can hold different postures while each one is measured against the same benchmark.
Posture reporting is exportable and mapped to recognized standards, so the answers to the Microsoft 365 questions come from the tenant itself.
Augmentt shows every Conditional Access exclusion across tenants and alerts you when a new one appears. Whether to allow an exception stays the firm’s call, made with the risk in view.
Lighthouse is oriented to identity and threat protection and does not reach SharePoint, OneDrive, Purview, or Teams policy. Augmentt covers those alongside Conditional Access, Intune, and Defender in one multi-tenant console.

Microsoft licensing requirements show in the compliance view, so the gap is visible per tenant and becomes a concrete licensing conversation instead of a surprise.

Pick a real law firm tenant. We'll show you what's exposed in it.

Thirty minutes on your own environment. Connect one tenant live, see the findings, and see the report you’d hand that client next week.

Overlay

A live posture scan on one of your own law firm client tenants, not a canned dataset.

Overlay

The client-facing report you could send that account the same week.

Overlay

A straight answer on whether the margin works at your client count.

No slides. No multi-week sales sequence.

Book Your Demo

Pick a time and bring one tenant. You’ll leave the call knowing exactly what’s exposed in it.

Prefer To Skip The Call?

Start the free trial instead. Connect a tenant yourself, run the first posture scan in under ten minutes, and see the findings before you ever talk to us. No card, no lock-in.