Assessment
Identity Security Review
Can anyone sign in where they should not — and how far can they then get? The Identity Security Review answers exactly that question. We review identity, access and permissions in Entra ID without covering the full Microsoft 365 surface.
What the review covers
- Authentication methods, MFA coverage and Security Defaults
- Password policies, legacy protocols (IMAP/POP/SMTP) and session controls
- Conditional Access policies and their coverage for admins, users, guests and service accounts
- Administrative roles, least privilege and inactive users
- OAuth permissions, App Registrations, Enterprise Apps, secrets and consent settings
- Tenant region and data residency
What you get
- Written report with observations, risks and recommendations
- Prioritised by risk and practical applicability
- A faster engagement than the full M365 assessment
Out of scope
- Not a full M365 assessment
- Does not cover Exchange, SharePoint, OneDrive, Teams, Intune or endpoints beyond identity-related matters
How it works
01
Free pre-analysis
We assess the scope and give you a fixed price. No obligation, no surprises.
02
Read-only data collection
Automated extracts via PowerShell and Graph — zero operational disruption.
03
Analysis & assessment
Manual specialist review with risk prioritisation and business context.
04
Report & plan
An executive summary for leadership, technical depth for your team — ready to act on.
First step
Ready to have your security verified?
A free, no-obligation pre-analysis. A fixed price. A concrete plan you can act on right away.
Book a free pre-analysis