Complete Automation

Almost all CIS tests are automated with SmartProfiler for Microsoft 365 CIS Assessment.

Detailed Reporting

Detailed reporting includes information about each CIS Test and Step-By-Step Recommendations to fix the issues.

234 Tests

Other than CIS, SmartProfiler for Microsoft 365 includes other tests. We offer 234 tests that cover every facet of Microsoft 365.

Image

SmartProfiler for Microsoft 365 CIS Assessment

SmartProfiler for Microsoft 365 Assessment is an automated Health & Risk assessment solution to help you significantly improve your Microsoft 365 ecosystem health & security posture. SmartProfiler for Microsoft 365 Assessment follows CIS-Workbench controls (Version 3.1.0) and other tests designed by our Microsoft 365 experts. Services covered: MSOnline, EXO, Teams, SharePoint, OneDrive, and Azure AD.

The Center for Internet Security is a nonprofit entity whose mission is to ‘identify, develop, validate, promote, and sustain best practice solutions for cyberdefense.’ It draws on the expertise of cybersecurity and IT professionals from government, business, and academia from around the world. To develop standards and best practices, including CIS benchmarks, controls, and hardened images, they follow a consensus decision-making model. SmartProfiler is designed to support CIS Standards designed for Microsoft 365 and Azure Assessments.

Automation

Shape Image
Shape Image

Simple Requirement

SmartProfiler for Microsoft 365 requires a Global Reader or Global Admin Account to perform all tests.

A Global Admin/Reader Account

SmartProfiler needs a Global Admin or Reader Account in order to gather the information needed for analysis. An Azure Application does not need to be registered in order to collect data. Note that Global Reader Account will not have permissions to execute SharePoint tests.

Microsoft PowerShell Modules

PowerShell modules are already included in the product, so installing them is not necessary before running the assessment. Before beginning the assessment, the product automatically imports PowerShell modules.

Read-Only Operation

SmartProfiler is a read-only product, and no write operation is ever made to the target while it is being assessed.

Image

Quick Assessment

SmartProfiler for Microsoft 365 CIS Assessment is simple to use and execute in four-steps.

  • Register M365 Tenant
  • Assessment Summary
  • Execute Assessment
  • Generate Report
View Details

Assessment Categories

SmartProfiler for Microsoft 365 supports all CIS Categories from V3.0 and some tests such as MDM that were excluded from V3.0.

Users

Performs several tests related to Office 365 users. There are more than 13 tests performed for all Office 365 Users.

Exchange Online

Performs tests related to Exchange Online and Email. Policies, Email Forwarding, Mailboxes on Litigation hold, and several other tests are performed. Exchange Online category includes 30 tests.

Accounts & Authentication

All tests related to Azure Active Directory authentication, ensuring all MFA users and Office roles are using MFA. There are 23 tests performed.

Configuration

There are 12 tests performed for Office 365 configuration. The tests range from License Consumption to Directory Synchronization configuration.

Data Management

In the Data Management category tests related to DLP, external sharing, SharePoint Online protection and other relevant tests are performed. 7 Tests are available in Data Management Category.

Auditing

Auditing tests include checking AD-Risky Sign-In reports, ensure mail-forwarding rules are reviewed and other relevant auditing tests are executed. However, some auditing items need to be checked weekly and require manual intervention. There are a total of 16 tests available in Auditing Category.

Storage

Tests such as Ensure document sharing is being controlled by domains with whitelist or blacklist, Block OneDrive for Business sync from unmanaged devices and other storage tests are checked and reported.

Mobile Device Management

Mobile Device Management category includes more than 22 tests which are performed to ensure mobile devices have necessary policies configured.

SmartProfiler Tests

There are more than 119 SmartProfiler Tests performed which are designed by our Microsoft 365 Expert Team.

Frequently Asked Questions

Image

CIS V3.1.0 Tests

Here is the list of tests included with SmartProfiler for M365. SmartProfiler offers additional tests which are not included in CIS V3.1.0 list.

Why Choose SmartProfiler for Microsoft 365 CIS Assessment

Instead of manually gathering data, which could take a significant amount of time, SmartProfiler for M365 has automated all the tests to ensure that the assessment is completed in a matter of hours.

  • Fully Automated
  • Cover all aspects of Microsoft 365
  • Include MDM Tests
  • Include Additional Tests (199) which are not included in CIS V3.0
  • Supports Latest CIS V3.1.0
Download Now

What Client’s Say About Us

Latest Articles

blog image

Entra ID CIS Assessment with SmartProfiler-SecID

About SmartProfiler SmartProfiler for Entra ID is designed to mitigate security risks in the Azure

Read More
blog image

Executing Active Directory Assessment

About SmartProfiler SmartProfiler for Active Directory and ACTIVE DIRECTORY is designed to mitigate security risks

Read More
blog image

M365 CIS Benchmark and Microsoft Zero Trust Security Model

Organizations are increasingly reliant on cloud-based services to enhance productivity and collaboration. Microsoft 365, with

Read More
Translate »
Index