
Tests authored
Also contributed to
- CISA.MS.AAD.7.4Permanent active role assignments SHALL NOT be allowed for highly privileged roles.
- CISA.MS.AAD.7.5Provisioning users to highly privileged roles SHALL NOT occur outside of a PAM system.
- CISA.MS.AAD.7.6Activation of the Global Administrator role SHALL require approval.
- MT.1053Ensure intune device clean-up rule is configured
- MT.1056Ensure that no person has permanent access to all Azure subscriptions at the root scope
- MT.1061Device registration MFA control conflicts with Conditional Access policies
- MT.1074Mailboxes should not send outbound mails using the .onmicrosoft.com domain.
