https://www.channelfutures.com/wp-content/themes/channelfutures_child/assets/images/logo/footer-new-logo.png
  • Home
  • Technologies
    • Back
    • SDN/SD-WAN
    • Cloud
    • RMM/PSA
    • Security
    • Telephony/UC/Collaboration
    • Cable
    • Mobility & Wireless
    • Fiber/Ethernet
    • Data Centers
    • Backup & Disaster Recovery
    • IoT
    • Desktop
    • Artificial Intelligence
    • Analytics
  • Strategy
    • Back
    • Mergers and Acquisitions
    • Channel Research
    • Business Models
    • Distribution
    • Technology Solutions Brokerages
    • Sales & Marketing
    • Best Practices
    • Vertical Markets
    • Regulation & Compliance
  • MSP 501
    • Back
    • Complete 2023 MSP 501 Rankings
    • 2023 MSP 501 50-1
    • 2023 MSP 501 100-51
    • 2023 MSP 501 150-101
    • 2023 MSP 501 200-151
    • 2023 MSP 501 250-201
    • 2023 MSP 501 300-251
    • 2023 MSP 501 350-301
    • 2023 MSP 501 400-351
    • 2023 MSP 501 450-401
    • 2023 MSP 501 501-451
    • NextGen 101 Rankings
  • Intelligence
    • Back
    • Galleries
    • Podcasts
    • From the Industry
    • Reports/Digital Issues
    • Webinars
    • White Papers
  • Channel Futures TV
  • EMEA
  • Channel Chatter
    • Back
    • People on the Move
    • New/Changing Channel Programs
    • New Products & Services
    • Industry Honors
  • Resources
    • Back
    • Channel Futures 20: Top Tech Providers
    • Advisory Boards
    • Industry Organizations
    • Our Sponsors
    • Advertise
    • 2023 Editorial Calendar
  • Awards
    • Back
    • 2023 MSP 501
    • 2023 NextGen 101
    • Channel Influencers
    • Circle of Excellence
    • DE&I 101
    • Technology Advisor 101 (TA 101)
    • Channel Leaders Lists
  • Events
    • Back
    • 2024 CP Expo Call for Speakers
    • Channel Futures Leadership Summit
    • MSP Summit
    • CP Conference & Expo
    • Channel Partners Europe
    • Channel Partners Event Coverage
    • Webinars
    • Industry Events
  • About Us
  • DE&I
Channel Futures
  • NEWSLETTER
  • Home
  • Technologies
    • Back
    • SDN/SD-WAN
    • Cloud
    • RMM/PSA
    • Security
    • Telephony/UC/Collaboration
    • Cable
    • Mobility & Wireless
    • Fiber/Ethernet
    • Data Centers
    • Backup & Disaster Recovery
    • IoT
    • Desktop
    • Artificial Intelligence
    • Analytics
  • Strategy
    • Back
    • Mergers and Acquisitions
    • Channel Research
    • Business Models
    • Distribution
    • Technology Solutions Brokerages
    • Sales & Marketing
    • Best Practices
    • Vertical Markets
    • Regulation & Compliance
  • MSP 501
    • Back
    • Complete 2023 MSP 501 Rankings
    • 2023 MSP 501 50-1
    • 2023 MSP 501 100-51
    • 2023 MSP 501 150-101
    • 2023 MSP 501 200-151
    • 2023 MSP 501 250-201
    • 2023 MSP 501 300-251
    • 2023 MSP 501 350-301
    • 2023 MSP 501 400-351
    • 2023 MSP 501 450-401
    • 2023 MSP 501 501-451
    • NextGen 101 Rankings
  • Intelligence
    • Back
    • Galleries
    • Podcasts
    • From the Industry
    • Reports/Digital Issues
    • Webinars
    • White Papers
  • Channel Futures TV
  • EMEA
  • Channel Chatter
    • Back
    • People on the Move
    • New/Changing Channel Programs
    • New Products & Services
    • Industry Honors
  • Resources
    • Back
    • Channel Futures 20: Top Tech Providers
    • Advisory Boards
    • Industry Organizations
    • Our Sponsors
    • Advertise
    • 2023 Editorial Calendar
  • Awards
    • Back
    • 2023 MSP 501
    • 2023 NextGen 101
    • Channel Influencers
    • Circle of Excellence
    • DE&I 101
    • Technology Advisor 101 (TA 101)
    • Channel Leaders Lists
  • Events
    • Back
    • 2024 CP Expo Call for Speakers
    • Channel Futures Leadership Summit
    • MSP Summit
    • CP Conference & Expo
    • Channel Partners Europe
    • Channel Partners Event Coverage
    • Webinars
    • Industry Events
  • About Us
  • DE&I
    • Newsletter
  • REGISTER
  • MSPs
  • VARs / SIs
  • Agents
  • Cloud Service Providers
  • Channel Partners Events
 Channel Futures

Security


IB Photography/Shutterstock

Microsoft 365

Key Practices to Close the Microsoft 365 Security Gap

  • Written by Derik Belair
  • October 21, 2022
MSPs can help bolster customer security via auditing, monitoring and tighter MFA vigilance.
Augmentt's Derik Blair

Derik Belair

Microsoft 365 is the new shiny object finding favor with the current army of cyberattackers.

Two of the critical CVEs (common vulnerabilities and exposures) Microsoft announced in September were related to Microsoft Dynamics 365 on-premises remote code execution. CVE-2022-34700 and CVE-2022-35805 give attackers an opportunity to finesse authentication processes to be able to execute arbitrary SQL commands, then escalate commands as the “owner” within the Dynamics CRM database. Since Dynamics includes several CRM and ERP business applications, there is potential for disruption to customer-facing workloads.

Authentication also continues to be an issue for Microsoft Office 365. While multifactor authentication (MFA) can help slow unauthorized access, hackers are already finding ways to circumvent MFA. Earlier this year Microsoft detailed a widespread Office 365 phishing campaign affecting more than 10,000 organizations.

The cyberattackers skirted MFA and were able to use passwords and session cookies to access emails containing financial information. Their goal was to execute BEC (business email compromise) scams and defraud businesses of millions of dollars through payments made. Using a proxy server, the attacker takes over the MFA process, inserting between the client and Microsoft. Once an MFA is approved the attacker is in and free to start making phony financial requests.

MSPs as Microsoft 365 Security Partners

Those two examples are just the tip of the iceberg. Microsoft 365 continues to be the most-targeted SaaS platform in the world.

A research report by Egress estimates 85% of organizations using Microsoft 365 have had an outbound email data breach. IT leaders (67%) have seen incidents rising post-pandemic and are notably concerned about protecting client data in a remote/hybrid environment.

In the SMB market, Microsoft 365 risk mitigation, compliance and security updates often compete for time and attention with a limited IT staff. MSPs can play a valuable role in launching a counter-offensive against the constant barrage of cyber threats. To strengthen data protection and prevent financial loss for their customers, MSPs can employ a combination of vigilance, license management and execution, and technology deployment to give SMBs far greater protection in their Microsoft 365 environments.

A good first step is revisiting the Microsoft Secure Score, which measures an organization’s security posture. Taken not as the absolute rule playbook for all security standards but as a useful starting point, MSPs can use the score to identify additional security defense measures they need to put in place.

MSPs often rely on third-party services to provide security applications, but these aren’t recognized in a Secure Score analysis. Also, Secure Score doesn’t address security-related compliance requirements such HIPAA, NIST and privacy regulations. It’s good to keep these limitations in mind when developing a complete security platform and communicating with customers.

Securing Microsoft 365

Security professionals are aware Microsoft 365 doesn’t come out of the box with a fully loaded anti-ransomware and anti-social engineering security package. They’re also aware that obtaining cybersecurity insurance at a reasonable rate is tied to demonstrating, among other items, an effective Microsoft 365 security program. However, many companies, particularly SMBs, are now living with even leaner IT and security staffs and finding it difficult to navigate the intricacies of complete Microsoft 365 security. MSPs play a significant part here in closing the staffing and security gap.

Ways to Help Customers Improve Security

These are key areas in which MSPs, working with third-party services, can help customers improve security:

  1. Multifactor Authentication (MFA). We know MFA breaches are occurring. It’s one of the most critical measures to execute. Also critical is blocking any legacy authentication “back doors” that can be used to circumvent MFA.
  2. Email safeguards. Outlook email is the most common point of attack for spammers and security can be improved by blocking suspicious attachments and highlighting external emails. It is also imperative to have a high-quality spam guard product, in addition to any Microsoft 365 standard filtering. These third-party products can vet emails before they reach the inbox, use machine learning to detect emerging threats, and help protect against denial-of-service (DoS) attacks.
  3. Licensing options. Investigate Azure licenses that can offer more security benefits for SMBs at an affordable rate. For example, the Azure AD Premium P1 licenses cost only $6 more per user compared with the Business Standard plan.
  4. Consistent auditing SMBs find monitoring security settings a time drag on their limited staff. Third- party services can conduct periodic audits to check for suspicious variances in access control and privilege access management. Auditing can also show precisely which users don’t have MFA enabled and lets MSPs configure alerts to be triggered if MFA is ever disabled.
  5. MSPs can conduct continuous monitoring that will automatically generate tickets for compliance violations.

Partnering to Beat the Microsoft 365 Hackers

Companies are adopting Microsoft 365 to leverage their cloud investments, support remote/hybrid workspaces and provide business continuity.

MSPs and their third-party service partners can enhance the benefits of Microsoft 365 by improving security beyond the standard Microsoft 365 out-of-the box features. By providing security practices like auditing, monitoring and tighter MFA vigilance, companies can avoid becoming prey to the seemingly endless attempts to disrupt Microsoft 365 use in the business world.

Derik Belair is president and CEO at Augmentt. Previously, he was vice president of marketing at SolarWinds, where he led the digital marketing strategy for the company’s cloud division after it acquired N-able Technologies, a company he helped build and sell to SolarWinds in 2013. He has been working in the channel for more than 20 years, having been through the IPO process and several acquisitions. You may follow him on LinkedIn or on Twitter @augmentt_com.

Tags: MSPs Technologies Best Practices Security

Most Recent


  • Cisco acquisition of Splunk gets partner reaction
    Partners Hope Splunk Keeps 'Pace of Innovation' in Cisco Acquisition
    All will be well if Cisco integrates Splunk the way it integrated Meraki, a partner told Channel Futures.
  • Broadcom-VMware and China
    Broadcom-VMware Hits Snag in China as IT Incurs Too-High Cloud Costs
    Our latest cloud news roundup features an acquisition update, looks at research you need to know, and more.
  • cloud marketplaces
    Haven’t Drunk the Cloud Marketplaces Kool-Aid? It’s About Time You Did
    The Ultimate Partner's Vince Menzione explains why channel partners (small ones, too) need to get on board.
  • Watching reality TV
    The Channel on Reality TV: Tech Advisor Shares Experience on Startup Show
    Going on a show for entrepreneurs showed how the technology advisor channel is one of the business world's "biggest secrets."

Leave a comment Cancel reply

-or-

Log in with your Channel Futures account

Alternatively, post a comment by completing the form below:

Your email address will not be published. Required fields are marked *

Related Content

  • Bridgepointe
    Palo Alto Networks Unleashes Expanded NextWave Partner Program
  • Layoffs_staff cuts
    Snyk Layoffs Hit Nearly 200 Workers Amid Continued Economic Headwinds
  • New Hire
    Delinea Picks Login VSI, Fuze Vet for Global Partner Ecosystem Leadership Role
  • Select a Hire
    Egnyte Hires Rubrik, Citrix Vet in Global Channel Leadership Role

Upcoming Events

View all

Channel Futures Leadership Summit

October 30, 2023 - November 2, 2023

Channel Partners Conference & Expo

March 11, 2024 - March 14, 2024

Channel Futures Leadership Summit 2024

September 17, 2024 - September 19, 2024

Galleries

View all

Broadcom-VMware Hits Snag in China as IT Incurs Too-High Cloud Costs

September 22, 2023

Cisco’s Splunk Acquisition ‘True Bombshell Move,’ Will Have Massive Impact on Cybersecurity

September 21, 2023

Cisco SMB Business Gets Updated Sales Coverage Model, New Investments

September 21, 2023

Industry Perspectives

View all

Why Conversational AI Matters for Your Customers and How It Can Boost Your Revenue

September 15, 2023

The 5 Ds that Lead to Unplanned Business Sales

September 13, 2023

Hot Generative AI Market Must ‘Cool Down’

August 28, 2023

Webinars

View all

MSP 501: Leadership in Cybersecurity

October 19, 2023

DE&I: Find the Balance that Works for You

September 7, 2023

Above and Beyond with the NextGen 101ers

August 30, 2023

White Papers

View all

6 UCaaS Reseller Challenges and How Real World Businesses Solved Them

February 1, 2023

Frost Radar: North American UCaaS Market, 2022

February 1, 2023

The Complete Guide to White-Label UCaaS for Reseller Success

February 1, 2023

Channel Futures TV

View all

Coffee with Craig and James Episode 129: ZLH Enterprises

Coffee with Craig and James Episode 128: Channel Partner Strategies Intelligence Service

August 25, 2023

Coffee with Craig and James Episode 127: Expereo, Movie Night Returns

August 18, 2023

Coffee with Craig and James Episode 126: ARG

July 28, 2023

MSP 501

The industry's largest and most comprehensive partner awards program.

Newsletters and Updates

Sign up for The Channel Report, Channel Futures Update, MSP 501 Newsletter and more.

Live Channel Events

Get the latest information on the next industry-leading Channel Partners event.

Galleries

Educational slide shows and images from live events.

Media Kit And Advertising

Want to reach our audience? Access our media kit.

DISCOVER MORE FROM INFORMA TECH

  • Channel Partners Events
  • Telecoms.com
  • MSP 501
  • Black Hat
  • IoT World Today
  • Omdia

WORKING WITH US

  • Contact
  • About Us
  • Advertise
  • Newsletter

FOLLOW Channel Futures ON SOCIAL

  • Privacy
  • CCPA: “Do Not Sell My Data”
  • Cookie Policy
  • Terms
Copyright © 2023 Informa PLC. Informa PLC is registered in England and Wales with company number 8860726 whose registered and Head office is 5 Howick Place, London, SW1P 1WG.
This website uses cookies, including third party ones, to allow for analysis of how people use our website in order to improve your experience and our services. By continuing to use our website, you agree to the use of such cookies. Click here for more information on our Cookie Policy and Privacy Policy.
X