Quickly deploy best-practice policy configurations, target specific technical outcomes with ease, and build your ideal tenant security in bite-sized chunks by leveraging Shared Baselines, created and managed by inforcer experts.
Researching compliance frameworks, interpreting Microsoft's latest recommendations, and building them into an ideal baseline is a project in its own right: one that can stall onboarding and delay revenue while engineers piece together their best practice policy set.
Microsoft 365 policy configuration is complex, especially as Microsoft are continually issuing updates, security improvements, and new features. Building baselines manually introduces the risk of initial misconfiguration or missing crucial updates or changes.
MSP groups need to keep every associated business aligned to a single security standard. When each member of the group builds its own baseline, you end up with different configurations across customers, with no easy way to roll out a group-wide update.
Access a library of expert-curated policies you can adopt, tailor, and standardize across your customer base.
Skip weeks of research and manual policy-building. Start from inforcer-curated baselines built by our in-house Microsoft 365 experts, informed by CIS, NIST, and guidance from our global partner community, for immediate, enterprise-grade protection across identity, devices, email, and collaboration.
Shared Baselines are managed by inforcer and read-only by design, removing the risk of accidental edits or untested changes hitting customer environments. They give every MSP a trusted starting point and support incremental security uplift over time, without re-engineering the baselines already in place.
Adopt the entire inforcer Blueprint for a complete security foundation, or deploy only the relevant policy sets that fit specific outcomes you want to achieve. The phased, modular nature of Shared Baselines gives you full control over what is deployed, so you can match each customer's maturity, license stack, or current project.
Sharing baselines and best practices across MSPs makes it simple for parent MSPs, franchises, and groups to maintain a single gold-standard baseline. It’s easy for MSP groups to enforce the same security standards across different customer bases.
Explore every Shared Baseline in one place, filter by product or tag, and review exactly what each one includes before you subscribe or deploy.
Adopt our flagship Shared Baseline: a tiered, modular framework built and continually maintained by inforcer's in-house Microsoft 365 experts.
Take a phased approach by picking the policies that matter most and deploying them directly into your baseline tenant to start architecting your gold-standard configuration.
One-to-many rollouts are now simpler than ever, with alignment and deployment working together so the right baselines reach the right tenants at scale.
Want to see inforcer in action? Join a live platform demo with inforcer Co-founder and Chief Community Officer, Will Connor to explore how inforcer could help you streamline and standardize Microsoft 365 management.
Hear from the MSPs using inforcer to deploy best practice Microsoft 365 configurations with Shared Baselines
"inforcer has helped us better define what we do and improve how we deliver. To any other Microsoft Partner considering whether to work with inforcer, I d simply ask: can you afford not to?”
Tom Lovell,
Chief Technology Officer, Infinity Group
“With inforcer, we realized we had something that would allow us to define a security standard, and roll that out easily across all our customers. Without it, enrolling a single customer would have required multiple different skillsets and a much longer timeframe."
Gary Melvin,
Security Division Lead, Nostra
"Unlike other platforms that try to be everything to everyone,inforcer stood out as a pure specialist. Their focus on doing one thing exceptionally well, policy alignment and tenant security, was exactly what we needed."
Daniel Gough,
Systems Engineer - Managed Services, Techcare
"inforcer is the best platform for our needs: it s fast, easy to understand, and has the best selection of settings available compared to other M365 configuration solutions. It has made it much more manageable to deliver the full value of Microsoft 365 Business Premium to our customers".
Knut Kyrkjebø,
Senior ITC Consultant, Procano AS
Open the inforcer Library and explore curated, best-practice baselines built and maintained by our in-house Microsoft 365 experts, including the inforcer Blueprint, regional content like the Essential 8, and other expert-authored baselines.
Pick the entire inforcer Blueprint for a complete security foundation, or select a single tier or module such as identity, email, device security, or MAM, to target a specific project or customer maturity stage. You'll see exactly what's included before you deploy.
Push your chosen baseline to one tenant or many in a few clicks. Alignment and deployment work hand-in-hand, so you can monitor drift, layer additional baselines over time, and uplift security incrementally without re-engineering what's already in place.
See the difference between building baselines yourself and starting from a curated, maintained library.
Imagine onboarding a new customer and needing to apply enterprise-grade security from day one. Without a maintained baseline library, that means digging through CIS documentation, interpreting Microsoft's latest guidance, and hand-building every policy from scratch, every time, for every tenant. Once you've deployed, the work doesn't stop: Microsoft pushes multiple platform changes a month, and your baseline starts drifting the moment it goes live.
With inforcer's Shared Baselines, you start from a gold-standard foundation built by Microsoft 365 specialists and continually maintained as Microsoft makes changes. The inforcer Blueprint gives you a tiered, modular framework you can deploy in minutes, extend by project, and trust to stay current so your team can focus on serving customers, not chasing Microsoft's release notes.
Customers often mature gradually and security concerns and priorities can evolve over time, meaning configuring and rolling out everything at once isn’t always the best way forward.
The inforcer Blueprint takes a phased, modular approach. Deploy the full framework for an enterprise-ready foundation, or pick a single tier or module to target a specific customer outcome or upsell opportunity. Layer additional baselines over time as customer needs grow. It's security uplift on your terms, at your customer's pace.
Custom baselines have the potential to introduce two problems: misconfiguration risk and inconsistency. One engineer's interpretation of best practice could easily differ from another's, and small variations across tenants can compound into big support headaches over time. This is particularly true if you are part of a larger MSP group, and want to ensure consistency across businesses.
Shared Baselines are read-only and inforcer-managed, which removes the risk of accidental edits or untested changes hitting customer environments. Every tenant deployed against the same baseline is configured identically, giving you a single, defensible security standard that you can scale across your customer base or MSP group.
Shared Baselines are inforcer-managed, best-practice policy sets you can deploy across your customers' Microsoft 365 tenants. Unlike full tenant baselines, they're focused and modular, so you can adopt only the policies that are relevant to a specific outcome, like securing identity, hardening email, or rolling out Mobile Application Management, depending on your specific requirements. They're curated and maintained by inforcer's Microsoft 365 experts, so you always have a trusted starting point.
A traditional baseline tries to configure everything at once. Shared Baselines take a phased, modular approach, letting you build tenant security in bite-sized chunks rather than a single all-or-nothing rollout. That means lower risk, faster adoption, and the ability to layer security uplift over time without re-engineering what's already in place.
The inforcer Blueprint is our flagship Shared Baseline: a tiered, best-practice policy framework built by inforcer's in-house Microsoft 365 experts and shaped by the global partner community. It gives MSPs an enterprise-grade security foundation they can deploy with confidence and extend, project by project, as their customers mature.
Shared Baselines and the inforcer Blueprint are built for the engineers and solutions architects responsible for designing and scaling customer security standards. Whether you manage 10 tenants or 10,000, you get a controlled, documented way to deploy best-practice policies without building everything from scratch.
No, Shared Baselines are read-only and maintained by inforcer, which is what makes them a low-risk starting point. As Microsoft updates its platform, we update the baselines so you get the benefit without the maintenance burden. If you need to tailor configurations to a specific customer, you can use Custom Baselines alongside Shared Baselines.
Shared Baselines live in the new Library experience inside inforcer, where you can browse the inforcer Blueprint, regional content (such as the Essential 8 for ANZ partners), and other curated baselines. From the Library you can review exactly what each baseline contains before deploying.
Yes. One of the biggest advantages of Shared Baselines is granular adoption. You can deploy the entire Blueprint, a single tier, or a targeted module like MAM, whatever fits the customer's maturity, license stack, or current project. Alignment and deployment work hand-in-hand, making one-to-many rollouts straightforward.
Want to know more? Explore our additional Microsoft management resources.
Get best practice policy configuration straight out of the box with inforcer.