Cloud Sentry
M365 Hygiene Check

See your real Microsoft 365 security posture, read-only.

A guided, read-only look at your tenant today, run through the same platform we use to operate security day to day. No sales trap, and the fee credits toward ongoing coverage if you continue.

What the check looks at

A read-only pass across the parts of Microsoft 365 that actually determine your exposure, not a generic questionnaire.

Identity and MFA posture

Which accounts have multi-factor authentication enforced, which don't, and where sign-in policies leave a gap.

Conditional access

Whether access is actually conditioned on device, location, and risk, or left open to anything with a password.

Admin role sprawl

Who holds Global Administrator and other privileged roles today, and whether that list still makes sense.

Microsoft Defender configuration

Whether Defender's protections are turned on and tuned, not just included in the license.

External sharing and data exposure

What's shared outside your organization, with whom, and whether it's still supposed to be.

Mailbox and forwarding rules

Hidden forwarding rules and mailbox permissions that quietly redirect or expose mail.

License capabilities you already own

Security features included in your current Microsoft 365 tier that are sitting unused.

How it works

Three steps, read-only the whole way through

We ask for read-only access, and we never change anything in your tenant during the check. What you decide to change afterward is entirely up to you.

01

You enroll, we request read-only access

A few minutes to sign up and grant read-only access to Microsoft 365. Nothing changes in your tenant at any point in the process.

02

We read the tenant

We look at the real configuration behind identity, Conditional Access, Defender, sharing, and mail flow, the same signals we watch for operated clients.

03

You get a working session

We walk through what we found and what it means with a real person, live. Not a PDF that lands in your inbox with no one to ask.

What you get, and what this is not

The calm version, stated plainly.

What you get

  • A specific, current read of where your Microsoft 365 tenant actually stands
  • The handful of gaps that matter most, explained in plain language
  • A live working session to walk through the findings with a real person
  • A summary you keep, on your own timeline

What this is not

  • ×Not a sales pitch dressed up as an assessment
  • ×Not a bait-and-switch. The fee credits forward if you continue
  • ×Not a commitment to buy anything
  • ×Not an automated PDF with no one to explain it

How you'll see it

There is no separate demo environment.

The check runs through the Cloud Sentry Operations Platform, the same system we use to operate security day to day. What you see in the working session is the platform itself.

And if you want us to fix what we find

Some gaps are a five-minute fix. Others are a policy decision only you can make. If you want to move from a one-time read to an operated posture, that is what Microsoft 365 security covers: activating the capabilities you already own and keeping them configured over time. The plans page lays out how that work is structured.

See where you actually stand.

Read-only, and the findings are yours to keep. Or go straight to how ongoing coverage works.

Read-only, delivered through the platform itself, and the fee credits toward ongoing coverage if you continue. Enroll and we'll reach out to schedule the read.

If the check turns up more than a five-minute fix, here is the scope, the visibility, and the team that keeps it fixed.