Microsoft 365 Tenant Hardening
in 90 Minutes.
Ninety minutes with an engineer, working through the Essential controls of the ITSailor Microsoft 365 baseline against public Microsoft, NIST and EU sources. You leave with the checklist and the policy exports.
Sold to consumers, so the 14-day cooling-off period applies with no reason required. Our checkout does not capture the Article 16(a) consent that would end that right, so it survives delivery. Ask us to start early and then withdraw before the workshop is fully performed, and you pay only for what was delivered up to that moment. Refund Policy, section 02.
Need the tenant actually done, not just the method? Scope the Microsoft 365 Tenant Hardening service. This workshop is method only; that is implementation.
- Entra ID & MFA baselineSecurity defaults vs Conditional Access, phishing-resistant MFA for admin roles.
- Conditional Access & legacy authBlock legacy protocols and device-code flow, recreate the baseline CA policies.
- Admin roles & privileged accessLeast privilege, break-glass accounts, PIM where your licensing allows.
- Audit, Defender & handoverUnified audit log, anti-phishing baseline, and your Exit Kit to keep.
The Professional Pack
90 minutes, live
A working session with the founder, not a video. You get a scheduling link after payment and pick the slot.
Hardening checklist
A structured Markdown checklist for tenant findings, evidence, owners, exceptions, and remediation decisions.
Policy templates
Conditional Access and Intune policy exports (JSON) you can import directly into your tenant.
Attendance record
A dated confirmation that you attended, naming what the session covered. Useful for a training log. It is not a certification and nothing verifies it beyond us.
The Curriculum.
Identity Layer
Data & Purview
Endpoint Security
Auditing & Monitoring
Stop reactive patching.
Master the architecture.
Ninety minutes live, plus the checklist and the policy exports to keep. €149, one-time. You get a scheduling link after payment.