Description:

Reports on the Microsoft Secure Score improvement action Ensure Safe Links for Office Applications is Enabled, part of Microsoft Defender for Office 365. Microsoft evaluates this control across your tenant's policies and Augmentt surfaces the result alongside your other posture checks.

Why:

Enabling Safe Links policy for Office applications allows URL's that exist inside of Office documents and email applications opened by Office, Office Online and Office mobile to be processed against Defender for Office time-of-click verification and rewritten if required.

Safe Links for Office applications extends phishing protection to documents and emails that contain hyperlinks, even after they have been delivered to a user.

Configured: 100% of users are affected by policies that are configured securely

Not Configured: One or more applicable policies are not configured securely.

Scoring: Contributes up to 1 point to the Posture Recommendations score.

Category: Exchange

Microsoft Licensing: M365 Defender

Secure Score Impact: YES — Microsoft Secure Score control mdo_safelinksforOfficeApps.

Remediation in Augmentt: Microsoft Defender portal

Compliance Frameworks:

  • CISA SCuBA — MS.EXO.15.2

  • NIST CSF 2.0 — DE.CM-09

  • CIS Microsoft 365 Benchmark v5 — 2.1.1

  • CIS Microsoft 365 Benchmark v6 (Level 2) — 2.1.1

  • CIS Microsoft 365 Benchmark v7 (Level 2) — 2.1.1

  • CIS Controls v8 — 10.1

  • CIS Controls v8.1 — 10.1

  • CIS Controls v7 — 7.4

Microsoft documentation: