Microsoft 365 security audit for small businesses
Start a Microsoft 365 security audit with read-only checks, provider evidence and remediation priorities. Understand when you need a wider consultancy audit.
Read the guide →Practical answers, supported by evidence
Understand the controls your business relies on, the questions to ask your IT provider and the evidence that supports the answers.
Start with your baseline
Understand scope, settings checks, provider evidence and practical priorities before deciding what to investigate next.
Read the assessment guide →Free download — no email required
Work through 40 controls across eight areas with your IT provider, record supporting evidence and agree your next three priorities.
Download the checklist PDFStart a Microsoft 365 security audit with read-only checks, provider evidence and remediation priorities. Understand when you need a wider consultancy audit.
Read the guide →Review Microsoft 365 security after changes, check provider evidence and agree a practical action plan for your small business.
Read the guide →A practical Microsoft 365 security checklist covering accounts, MFA, email, sharing, recovery and the evidence your IT provider should supply.
Read the guide →Understand how Microsoft 365 fits into Cyber Essentials, what evidence to prepare and why tenant settings alone are not certification.
Read the guide →Understand Microsoft Secure Score, what a good score means, how to prioritise improvements and why it is not complete security assurance.
Read the guide →Review Microsoft 365 MFA coverage, enforcement, administrator protection and exceptions, with a clear evidence checklist.
Read the guide →Review Global Administrator accounts, standing access, MFA, provider access and emergency access in Microsoft 365.
Read the guide →Use a free assessment to identify selected control gaps and agree priorities.