{"id":13884,"date":"2024-04-18T07:00:00","date_gmt":"2024-04-18T11:00:00","guid":{"rendered":"https:\/\/centricconsulting.com\/post\/do-you-know-your-office-365-secure-score_portal\/"},"modified":"2024-04-18T13:39:01","modified_gmt":"2024-04-18T17:39:01","slug":"do-you-know-your-microsoft-secure-score","status":"publish","type":"post","link":"https:\/\/centricconsulting.com\/blog\/do-you-know-your-microsoft-secure-score\/","title":{"rendered":"Do You Know Your Microsoft Secure Score?"},"content":{"rendered":"

Secure Score analyzes and assigns a score to your Microsoft 365 security. Learn how.<\/h2>\n
\n

Microsoft Secure Score is an analysis report available for free with a Microsoft 365 subscription that lives at https:\/\/security.microsoft.com\/securescore<\/a>. As Microsoft defines, \u201cSecure Score analyzes your organization\u2019s security based on your regular activities, security settings and assigns a score.\u201d<\/p>\n

This tool benefits you by ensuring you know all the possible security settings available through your subscriptions. What exactly is analyzed, and how can your organization make the most of it?<\/strong><\/p>\n

What Is Microsoft Secure Score?<\/h2>\n

It aggregates your company\u2019s user behavior, system settings, and other security-related configurations<\/a> and vulnerabilities into one numerical value. The higher your score, the more secure your organization. Below, we break down everything that comes in the results, from the score itself to additional analyses that come along with it.<\/p>\n

1. The Score<\/h3>\n

The score is broken down across different areas so you can determine where your maturity needs to improve. The score within each of those areas is based on all possible options in each particular setting and how those options are actually used within your organization. For example, the action \u201cEnable MFA for all global admins\u201d has a potential score of 50\/50 points. If only half the available global admins have MFA activated, then the score will be 25\/50. The total number of points available for your tenant depends on your licensing.<\/p>\n

Each security setting has a category, impact, cost, and score assigned to it. Microsoft calculates the scores daily in the late hours.<\/p>\n

\"Microsoft<\/a>

Centric Consulting screen shot.<\/p><\/div>\n

2. Score History<\/h3>\n

As you continue to use Microsoft Secure Score, you\u2019ll start to see your score history so you can learn if your security posture<\/a> is improving (or not) over time.<\/strong> Like the score itself, you\u2019ll see a breakdown based on each individual component so you know if some scores have gotten better or if any have gotten worse.<\/p>\n

3. Recommendations and Top Improvement Actions<\/h3>\n

After you receive your score, in the report you can see what additional actions you could take to improve your score. As you improve and implement the actions listed below the score increases and decreases accordingly.<\/p>\n

In the example below, one action might be to \u201cBlock Office Communication application from creating child processes.\u201d<\/p>\n

\"M365<\/a>

Centric Consulting secure score.<\/p><\/div>\n

The Secure Score dashboard will even provide you with \u201cTop Improvement Actions,\u201d or actions you need to improve as soon as possible or ones that will be quick to address to help you improve your score quickly. It will even break down each action by how much in percentages it could improve your overall score.<\/p>\n

4. Benchmarks<\/h3>\n

Microsoft also computes the average score across all Microsoft 365<\/a> tenants of similar industries and sizes so you can see how your score compares to other organizations.<\/strong> Even so, keep in mind that all organizations have their own security needs and requirements, so the comparison is only an interesting chart to note and should not be used to gauge your company\u2019s security effectiveness.<\/p>\n

\"Microsoft<\/a>

Centric Consulting screen shot.<\/p><\/div>\n

How to Access and Use Your Score<\/h2>\n

To access Microsoft 365 Secure Score, you need Microsoft 365<\/a> with Exchange Online, SharePoint Online<\/a>, or OneDrive for Business.<\/p>\n

Once your admins are in a global or custom role, they will have access to Secure Score and will be able to share results with any non-admin users. The results are available graphically at the site and are downloadable for manipulation in Excel.<\/p>\n

Your IT administrators and security teams can then use the Excel spreadsheet to:<\/strong><\/p>\n