Microsoft 365 Security Audit

Microsoft 365 offers countless possibilities for collaboration and productivity. But with great functionality comes complexity – and potential security gaps.

Our Microsoft 365 Security Audit gives you clarity. We analyse your environment across Entra ID, Microsoft 365 Defender, Exchange Online, SharePoint and Teams – focusing on misconfigurations that could put your organisation at risk.

How we work

  • Read-only access through the admin portals (e.g. ‘Global Reader’ role);
  • Comprehensive checks using Microsoft Graph API queries;
  • Benchmarking against Microsoft best practices and compliance standards;
  • No changes to your system – 100% safe, read-only audit.

Clear recommendations

You receive a clear, structured report highlighting all findings and improvement options. Each recommendation is practical, actionable, and directly linked to the relevant admin portal – giving your IT team a quick start for strengthening security.

Your Benefits

  • Stronger security across your Microsoft 365 environment;
  • Reduced risks from misconfigurations;
  • Practical recommendations that can be implemented quickly;
  • Transparent documentation for management, IT leadership and auditors.

Let’s talk

Spot misconfigurations. Minimise risks. Strengthen your cloud security. With our expertise and proven methodology, we are here to support you.

Michael Cyl

Michael Cyl, M.Sc.

Head of Cyber Security | Penetration Testing

Email: mcyl@re-move-this.datenschutz-nord.de

Phone: +49 421 69 66 32-319

datenschutz nord GmbH, Bremen

Our Penetration Testing Expertise

Our penetration testers combine deep technical expertise with a clear focus on strengthening your IT security. Every project is tailored to your specific situation – with full transparency and straightforward processes from start to finish.

Our qualifications

Our penetration testers follow recognised standards such as BSI IS Penetration Test, BSI IS Web Check, OWASP and others. With many years of experience, they adapt each test to the specific situation and bring extensive project expertise, including in the smart meter gateway area according to BSI TR-03109-1. Throughout every engagement, we ensure uncomplicated processes, full transparency, and a clear focus on improving your organisation’s IT security.

We are also certified as:

  • Offensive Security Certified Professional (OSCP)
  • Certified Ethical Hacker (CEH)
  • Offensive Security Wireless Professional (OSWP)