Azure_IAM_20

Ensure that Users who can manage Office 365 groups is set to None

Description

Restrict Office 365 group management to administrators only.

Remediation

Perform the following in the Azure Console:

  1. Go to Azure Active Directory
  2. Go to Users and group
  3. Go to Group settings
  4. Set Users who can manage Office 365 groups to None

References:

  1. https://whitepages.unlimitedviz.com/2017/01/disable-office-365-groups-2/
  2. https://support.office.com/en-us/article/Control-who-can-create-Office-365-Groups-4c46c8cb-17d0-44b5-9776-005fced8e618

Service

IAM

Severity

High

Compliance

Mapping

We are now live on AWS Marketplace.
The integrated view of your cloud infrastructure is now easier than ever!