Newsletter Anmeldung

Bleiben Sie mit dem Newsletter immer up to date.

Request
arrow-to-top
HomeMandatesM365 Security Manager as a Service
Niklaus Manser
Head of Cyber- and IT Security Consulting
request

M365 Security Manager as a Service

Continuously monitor, assess and strengthen Microsoft 365 security

Microsoft 365 is now at the heart of many corporate infrastructures and, at the same time, one of the biggest targets for attack. Misconfigurations, unsecured identities, uncontrolled device access and unpatched vulnerabilities leave the door open to attackers. As your external M365 Security Manager, Swiss Infosec AG regularly and systematically assesses your Microsoft 365 environment and provides you with clear and prioritised recommendations for action.

What we do for you

Swiss Infosec AG analyses your M365 environment at set intervals using a structured assessment framework. In doing so, we cover the relevant security dimensions: configurations (tenant, Exchange, Teams, SharePoint), identities and access permissions (Entra ID, Conditional Access, MFA), endpoints (Intune/Defender for Endpoint), threat protection (Defender Suite, Alerts) and open vulnerabilities. The findings are consolidated, evaluated and presented in a clear report addressed to both management and IT managers.

Service components

  • Configuration analysis: Regular assessment of M365 tenant settings against recognised benchmarks (CIS Microsoft 365, Microsoft Secure Score)
  • Identity and access management: Review of Entra ID configurations, user roles, Conditional Access policies and MFA coverage
  • Device Security: Assessment of device management and compliance policies in Microsoft Intune and Defender for Endpoint
  • Vulnerability analysis: Evaluation of vulnerability findings from the Microsoft Defender Vulnerability Management environment
  • Threat Landscape: Review of active security alerts, incidents and configuration vulnerabilities in the Defender suite
  • Reporting: Periodic reports with prioritised recommendations for action, trend analysis and executive summary

Your added value

You receive a regular, structured overview of the security status of your M365 environment without having to build up your own resources for this specialised area. Risks are identified at an early stage, configuration deviations are addressed promptly and the security posture is continuously improved over time.

Swiss Infosec AG acts as a competent sparring partner for your IT team and a reliable reporter for management and governance.

Other related mandates

Niklaus Manser
Head of Cyber- and IT Security Consulting
request

Non-binding enquiry

© Swiss Infosec AG 2026