The Exchange Online security controls organizations keep getting wrong
Source: Help Net Security · Category: Security News — Technology
Microsoft MVP discusses overlooked Exchange Online security controls including legacy protocol restrictions, Conditional Access, and PIM. Directly relevant: law firms using Office 365 should audit SMTP AUTH enablement, audit logging, and identity governance configuration—flag for IT/CISO review against shared responsibility model.