Complete Automation

All CIS tests are automated with SmartProfiler for Microsoft 365 CIS Assessment.

Detailed Reporting

Detailed reporting includes information about each CIS Test and Step-By-Step Recommendations to fix the issues.

234 Tests

Other than CIS, SmartProfiler for Microsoft 365 supports other tests. We offer 234 tests that cover every facet of Microsoft 365.

Image

SmartProfiler for Microsoft 365 CIS Assessment

SmartProfiler for Office 365 Assessment is an automated Health & Risk assessment solution to help you significantly improve your Microsoft Office 365 ecosystem health & security posture. SmartProfiler for Office 365 Assessment follows CIS-Workbench controls and other tests designed by our Office 365 experts. Services covered: MSOnline, EXO, Teams, SharePoint, OneDrive, and Azure AD.

The Center for Internet Security is a nonprofit entity whose mission is to ‘identify, develop, validate, promote, and sustain best practice solutions for cyberdefense.’ It draws on the expertise of cybersecurity and IT professionals from government, business, and academia from around the world. To develop standards and best practices, including CIS benchmarks, controls, and hardened images, they follow a consensus decision-making model. SmartProfiler is designed to support CIS Standards designed for Office 365 and Azure Assessments.

Automation

Shape Image
Shape Image

Simple Requirement

SmartProfiler for Microsoft 365 requires a Global Reader Account to perform all tests.

A Global Reader Account

SmartProfiler needs a Global Reader Account in order to connect to the Microsoft 365 Tenant and gather the information needed for analysis. An Azure Application does not need to be registered in order to collect data.

Microsoft PowerShell Modules

PowerShell modules are already included in the product, so installing them is not necessary before running the assessment. Before beginning the assessment, the product automatically imports PowerShell modules.

Read-Only Operation

SmartProfiler is a read-only product, and no write operation is ever made to the target while it is being assessed.

Image

Quick Assessment

SmartProfiler for Microsoft 365 CIS Assessment is simple to use and execute in four-steps.

  • Register M365 Tenant
  • Assessment Summary
  • Execute Assessment
  • Generate Report
View Details

Assessment Categories

SmartProfiler for Microsoft 365 supports all CIS Categories from V3.0 and some tests such as MDM that were excluded from V3.0.

Users

Performs several tests related to Office 365 users. There are more than 13 tests performed for all Office 365 Users.

Exchange Online

Performs tests related to Exchange Online and Email. Policies, Email Forwarding, Mailboxes on Litigation hold, and several other tests are performed. Exchange Online category includes 30 tests.

Accounts & Authentication

All tests related to Azure Active Directory authentication, ensuring all MFA users and Office roles are using MFA. There are 23 tests performed.

Configuration

There are 12 tests performed for Office 365 configuration. The tests range from License Consumption to Directory Synchronization configuration.

Data Management

In the Data Management category tests related to DLP, external sharing, SharePoint Online protection and other relevant tests are performed. 7 Tests are available in Data Management Category.

Auditing

Auditing tests include checking AD-Risky Sign-In reports, ensure mail-forwarding rules are reviewed and other relevant auditing tests are executed. However, some auditing items need to be checked weekly and require manual intervention. There are a total of 16 tests available in Auditing Category.

Storage

Tests such as Ensure document sharing is being controlled by domains with whitelist or blacklist, Block OneDrive for Business sync from unmanaged devices and other storage tests are checked and reported.

Mobile Device Management

Mobile Device Management category includes more than 22 tests which are performed to ensure mobile devices have necessary policies configured.

SmartProfiler Tests

There are more than 119 SmartProfiler Tests performed which are designed by our Microsoft 365 Expert Team.

Frequently Asked Questions

Image

CIS V3.0 Tests

Here is the list of tests included with SmartProfiler for M365. SmartProfiler offers additional tests which are not included in CIS V3.0 list.

Why Choose SmartProfiler for Microsoft 365 CIS Assessment

Instead of manually gathering data, which could take a significant amount of time, SmartProfiler for M365 has automated all the tests to ensure that the assessment is completed in a matter of hours.

  • Fully Automated
  • Cover all aspects of Microsoft 365
  • Include MDM Tests
  • Include Additional Tests (199) which are not included in CIS V3.0
  • Supports Latest CIS V3.0
View More

What Client’s Say About Us

Latest News From Blog

Lorem, ipsum dolor sit amet consectetur adipisicing elit. Doloribus quam neque quibusdam corrupti aspernatur corporis alias nisi dolorum expedita veritatis voluptates minima sapiente.

blog image

Creating an Azure AD Application to be used with Microsoft Graph Modules for Office 365 Services

As you might be knowing Microsoft is going to retire Office 365 PowerShell cmdlets. Microsoft

Read More
blog image

Why Active Directory Security Assessment is Needed

Active Directory (AD) is a critical component of enterprise IT environments. It serves as a

Read More
blog image

What do we mean by a Complete Active Directory Technical Assessment

Many Active Directory vendors claim that their products can do a thorough technical Active Directory

Read More