Description:
Reports on the Microsoft Secure Score improvement action Enable the user impersonation safety tip, part of Microsoft Defender for Office 365. Microsoft evaluates this control across your tenant's policies and Augmentt surfaces the result alongside your other posture checks.
Why:
This setting specifies whether to enable the safety tip that is shown to recipients for user impersonation detections.
When the ‘Show user impersonation safety tip’ is enabled, the tip “This sender appears to be similar to someone who previously sent you email but may not be that person” is shown to recipients in messages where the sender's email address is included in user impersonation protection.
Configured: 100% of users are affected by policies that are configured securely
Not Configured: One or more applicable policies are not configured securely.
Scoring: Contributes up to 1 point to the Posture Recommendations score.
Category: Exchange
Microsoft Licensing: M365 Defender
Secure Score Impact: YES — Microsoft Secure Score control mdo_similaruserssafetytips.
Remediation in Augmentt: Microsoft Defender portal
Compliance Frameworks:
CISA SCuBA — MS.EXO.11.2
NIST CSF 2.0 — PR.AT-01
CIS Microsoft 365 Benchmark v5 — 2.1.7
CIS Microsoft 365 Benchmark v6 (Level 2) — 2.1.7
CIS Microsoft 365 Benchmark v7 (Level 2) — 2.1.7
CIS Controls v8 — 9.7
CIS Controls v8.1 — 9.7
CIS Controls v7 — 7
HIPAA Security Rule — 164.308(a)(5)(ii)(B)
Microsoft documentation:
