Executive Dashboard
Microsoft measures control enablement. TenantSentinel scores actual policy coverage and risk exposure — stricter criteria means lower scores are common even in well-managed tenants.
Loading risk analysis...
Loading recommendations...
Overview of MFA registration and usage across your organization. Click on any method or status to see associated users.
| Method | Users | Status |
|---|---|---|
| Microsoft Authenticator | -- | Strong |
| Windows Hello for Business | -- | Strong |
| SMS | -- | Weak |
| No MFA Registered | -- | Critical |
| Status | User Count | Percentage |
|---|---|---|
| Registered | -- | --% |
| Not Registered | -- | --% |
Users missing MFA or device compliance protection on one or more apps.
All tenant policies with full configuration details. Click to expand each policy.
Users with administrative or privileged roles. Click to expand and view assigned roles and daily usage.
| License Type ▼▲ | Status ▼▲ | Assigned ▼▲ | Active ▼▲ | Utilization ▼▲ | Annual Cost ▼▲ | Potential Savings ▼▲ |
|---|---|---|---|---|---|---|
| Loading license data... | ||||||
| TOTAL | -- | 0 | 0 | --% | $0 | $0 |
Users who haven't signed in for more than 30 days but still have assigned licenses
| User ▼▲ | Email ▼▲ | Days Inactive ▼▲ | Licenses ▼▲ | Annual Value ▼▲ |
|---|---|---|---|---|
| [OK] No significant license waste from inactive users | ||||
All users in your organization with authentication and licensing details. Click to expand each user.
Risk Scenario Analysis
This tab identifies specific security scenarios where users could bypass required protections. Each scenario is prioritized by severity (Critical → High → Medium) based on who is affected and what's at risk.
Priority-ranked by severity and impact
Compliance Framework Mapping
Each finding from this assessment is mapped to controls in the frameworks below.
Use this section to demonstrate alignment (or gaps) with your client's compliance requirements,
cyber insurance policy prerequisites, and regulatory obligations.
Controls TenantSentinel monitors per framework — passing vs. gaps detected in this scan
Every finding mapped to its relevant framework controls
Historical Trending & Drift Detection
Track security posture changes over time. Score regressions and MFA coverage drops are automatically flagged as drift events. Use this to demonstrate sustained improvement or identify backsliding before it becomes a breach.
Key metrics from scan history for this tenant
Overall score and domain breakdown across scan history
MFA adoption percentage over time
Number of open findings over time
Significant regressions and improvements detected between scans
Applications with Tenant Access
This tab displays only applications that have been granted explicit permissions to access your tenant data. Internal Azure services without permissions are excluded to focus on actual access risk. Click any app row to expand and view detailed permissions, risk signals, and ownership information.
Activity recency distribution based on last sign-in.
Apps with explicit tenant access: Click any row to expand and view detailed permissions, ownership, and risk assessment.
| App Name ▼▲ | Permissions ▼▲ | Risk Level ▼▲ | Last Activity ▼▲ | Days Inactive ▼▲ |
|---|---|---|---|---|
| Loading applications... | ||||