logo

Auditing Exchange Online From an Incident Responder's View

ID: 9084779b-47bb-58ae-8294-fa78abf108c0

STIX ID: report--9084779b-47bb-58ae-8294-fa78abf108c0

Feed Name: TrustedSec blog

Date Published: 2025-03-19

Date Updated: 2026-05-01

...
...

This guidance summarizes baseline recommendations to reduce Business Email Compromise (BEC) risk in Microsoft 365 by emphasizing appropriate licensing (E3+/E5 for advanced auditing and retention), enabling audit logs, enforcing multi-factor authentication (MFA), disabling legacy IMAP/POP3 protocols, and applying Azure AD security defaults to improve detection, response, and account protection.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.