To add a Microsoft Office 365 account and run individual configuration, compliance, and security controls or full CIS compliance benchmarks across all your Microsoft 365 tenants, follow the following steps:
Step 1: Create an Azure Account
This will give you the necessary credentials to access Microsoft Graph API and Microsoft 365 services.
Step 2: Grant Required Permissions
After creating an Azure account, you'll need to grant the following permissions to your user:
- Calendars.Read
- Files.Read.All
- Group.Read.All
- Mail.Read
- MailboxSettings.Read
- SharePointTenantSettings.Read.All
- Team.ReadBasic.All
- TeamMember.Read.All
- User.Read.All
These permissions allow the user to access the required data to run individual configuration, compliance, and security controls or full CIS compliance benchmarks across all your Microsoft 365 tenants.
Step 3: Turn off Conditional Access and MFA Policies for the Created Account
To ensure that the user has unrestricted access to Microsoft 365 services, turn off any conditional access and MFA policies that may be in place. By following these steps, you can easily add an o365 account and run individual configuration, compliance, and security controls or full CIS compliance benchmarks across all your Microsoft 365 tenants. If you encounter any issues during the process, contact our support team for further assistance.