A fast self-check for business owners and operations teams who want a clearer picture of Microsoft 365 risk before a phishing incident, insurance question, or suspicious mailbox event forces the issue.
Free PDF self-check • MFA, admins, mailboxes, and sharing • Built for owner-language review
Use this self-check to review the settings and risk areas that most often create avoidable email and account exposure in Microsoft 365.
Review each area honestly. The goal is not to pretend the tenant is secure. The goal is to identify where MFA, admin access, forwarding behavior, sharing, and mailbox hygiene still need work.
Guide overview
The self-check focuses on the areas that most often lead to account takeover, phishing fallout, mailbox compromise, and insurer or leadership concern in Microsoft 365 environments.
Preparation
Microsoft 365 problems often stay invisible until an attacker, broker, or executive asks the wrong question at the wrong time. A short review now is cheaper than cleaning up the wrong assumption later.
Find the most common Microsoft 365 security blind spots faster.
Separate true controls from vague assumptions.
Create a clearer case for what needs review or remediation next.
Support
Sun Life Tech can review MFA, mailbox protections, admin roles, sharing risk, and related Microsoft 365 settings if the self-check shows uncertainty or obvious gaps.
Sun Life Tech can review MFA, mailbox protections, admin roles, sharing risk, and related Microsoft 365 settings if the self-check shows uncertainty or obvious gaps.
Questions
Use these questions to guide the next internal review with your team or advisor.
Would we know today if a mailbox was forwarding somewhere suspicious?
Are admin roles limited to the right people with separate privileged accounts?
Do shared mailboxes and old users create avoidable confusion?
Could we explain our Microsoft 365 security posture in plain language to leadership?
Related support
If the guide raises questions about your current setup, these related services may help with a more direct review.
Move from a self-check into a focused tenant review with prioritized findings.
Use this when Microsoft 365 security is tied directly to insurer questions and evidence needs.
Fold Microsoft 365 hardening into a broader security baseline and follow-through plan.
FAQ
Short answers to common questions about the guide and the related technical review process.
No. It is designed to help you spot likely problem areas and decide whether a deeper review is warranted.
Yes. That is one of the best times to use it. Many of the most important Microsoft 365 risks are easier to fix before a phishing or mailbox issue creates urgency.
Next step
If the guide raises technical questions, Sun Life Tech can help review the environment and identify what should be addressed first.
If the guide raises technical questions, Sun Life Tech can help review the environment and identify what should be addressed first.