Microsoft 2023 Security Trends: 5 Identity Improvements

4 min read
Feb 2, 2023, 10:31:44 AM

Summary:

Microsoft's 2023 identity security report outlines five recommendations for strengthening Microsoft 365 identity security, based on the premise that no single security control can fully stop an attacker: standardizing policy configurations, enforcing multi-factor authentication, monitoring configuration drift, aligning with compliance frameworks, and securing administrative access. inforcer 365 Manager allows MSPs to address each of these areas across every managed tenant environment from a single dashboard.

What You'll Learn
  • The high-level defense-in-depth premise behind Microsoft's 2023 identity security recommendations

  • Where to find Microsoft's original January 2023 source report for the full five recommendations

Next Steps
  • Download inforcer's free "5 ways to improve your Microsoft security" infographic
  • Read Microsoft's original January 26, 2023 blog post for the full detail behind each recommendation
  • Use inforcer 365 Manager to improve security for every Microsoft tenant your MSP manages
Benefits for MSPs
  • Start security conversations with customers using Microsoft's own research as backing
  • Save time managing security across multiple Microsoft 365 environments

Scope and Limitation Statement

This article summarizes and points to Microsoft's own 2023 identity security research and provides a brief summary of Microsoft's five specific recommendations. For details, read the full report (linked below).

Versioned Specifics

  • Article originally published: February 2, 2023

  • Source report referenced: Microsoft security blog, January 26, 2023

Are you maximising identity security for your customers? Microsoft are constantly looking at ways that can increase identity security for their partners' customers.

Below, you'll find a quick overview of what's contained in Microsoft's 2023 report on improving identity strategy, as well as how MSPs can manage security efficiently for multiple tenants using inforcer 365 Manager.

Microsoft released their 2023 report on improving identity strategy recently which includes 5 ways you can increase your customers security. The report goes on to say:

“Each of these recommendations has value in and of itself, but taken together, they represent an approach to defense-in-depth. Defense-in-depth encourages us to assume that any single control might be overcome by an attacker, so we have multiple layers of defense.”

We have produced a free, trust-building infographic: "5 ways to improve your Microsoft security" for you to share/edit with your customers and emphasise the importance of your security services, also to save you some time!

5 Identity Security Trends & Solutions from Microsoft

1. Multifactor Authentication

Multifactor authentication (MFA) is the most critical baseline defense for modern identity security. By requiring multiple forms of verification (such as a password combined with a biometric scan or a mobile authenticator app prompt), MFA blocks the vast majority of automated credential attacks.

Microsoft strongly emphasizes moving toward phishing-resistant MFA methods, like FIDO2 security keys and Windows Hello for Business, to neutralize advanced threats like adversary-in-the-middle attacks.

2. Conditional Access Rules

Conditional Access functions as the intelligent policy engine at the heart of a Zero Trust architecture. It allows organizations to enforce precise security controls based on real-time signals, evaluating the user's identity, physical location, device health, and the specific application being accessed.

By continuously calculating risk before granting access, these rules automatically block anomalous login attempts and proactively defend enterprise applications from sophisticated cyber threats.

3. Cloud-First Approach

A cloud-first approach provides organizations with the agility needed to counter rapidly evolving security threats. By leveraging cloud-native identity platforms, businesses gain access to real-time global threat intelligence, adaptable authentication methods, and automated responses to common security incidents.

This shift can make it easier to remediate compromised accounts without requiring extensive manual intervention from IT administrators.

4. Limit On-Premise Exposure

To minimize the potential damage from a security breach, organizations must aggressively limit their on-premise exposure and eliminate traditional security silos. Integrating your Security Operations Center (SOC) with identity governance tools bridges the gap between threat detection and access control.

This ensures that if an identity is compromised anywhere across the hybrid infrastructure, the SOC can instantly revoke access and contain the threat.

5. Mobile Device Management & Endpoint Protection

Securing the endpoint is vital to stopping advanced identity theft, specifically token theft attacks where bad actors steal active session state data. Implementing Mobile Device Management (MDM) and prohibiting users from running as local administrators on their devices strictly curtails unauthorized software installations.

Coupled with robust endpoint protection, this restriction helps prevent malware from harvesting session tokens straight from device memory.

Download the Infographic

Get a handy visual reference you can use to remember the steps above by clicking the button below.

Download Infographic

Improve Security for Every Microsoft Tenant You Manage

inforcer 365 Manager allows MSPs to manage multiple Microsoft tenants from the same single-pane dashboard instead of needing to manually log into each one when security changes are needed. Use it to set security baselines, verify compliance against recognized security frameworks, update policies, and remediate configuration drift for every tenant you manage.

Book a demo of inforcer 365 Manager today and see how this approach can help your MSP scale more efficiently.

FAQs

What are Microsoft's 2023 identity security recommendations about?

They center on a defense-in-depth approach to Microsoft 365 identity security — layering multiple controls together on the premise that any single control could be overcome by an attacker on its own.

Why is Microsoft pushing for phishing-resistant Multifactor Authentication (MFA)?

Standard MFA can sometimes be bypassed, so Microsoft emphasizes phishing-resistant methods like FIDO2 security keys and Windows Hello for Business to neutralize advanced adversary-in-the-middle attacks.

How do Conditional Access Rules protect enterprise applications?

They act as a real-time policy engine that evaluates user identity, location, device health, and the application requested to calculate risk and automatically block anomalous login attempts.

What are the security advantages of a cloud-first approach?

It provides real-time global threat intelligence, adaptable authentication, and automated incident responses, allowing the system to remediate compromised accounts with minimal manual intervention.

How does restricting local administrative privileges prevent token theft

Prohibiting users from running as local administrators curtails unauthorized software installations, preventing malware from harvesting active session tokens straight from device memory.

How does inforcer 365 Manager help Managed Service Providers (MSPs) implement these security steps?

It allows MSPs to manage multiple Microsoft tenants from a single dashboard to set security baselines, monitor configuration drift, and update policies without logging into each tenant manually.

 

 

false