Customized Secure Score
M
Mark Schuh
A wish list item for Marco is to have the ability to customize the MS Secure Score. Microsoft will only score the items within its purview. Items such as MFA may have a 3rd Party compensating control in place. It would be nice to have a selection box or exception method to indicate a compensating control is in place and a description box of what that is. Then have a secondary score that is the adjusted value if Microsoft had scored it as being present. Believe the scoring values at Microsoft are constant.
Reporting, like the interface, should show both scores and a list of compensating controls. Then client's will have a report that can be used that layouts out the compensations for audits as the MS Secure Score may not be a true depiction of environment.