Description:

Verifies that Microsoft Entra Security Defaults are disabled. This check is intended for tenants that use Conditional Access — Security Defaults must be off for Conditional Access policies to apply.

Why:

Microsoft Entra Security Defaults and Conditional Access are mutually exclusive. For tenants using Conditional Access, Security Defaults should be disabled so Conditional Access policies can provide granular MFA, sign-in risk, and legacy authentication controls.

Configured: Security Defaults are disabled.

Not Configured: Security Defaults are enabled.

Scoring: Contributes up to 1 point to the Posture Recommendations score.

Category: Identity

Microsoft Licensing: Requires Premium (P1) licensing

Remediation in Augmentt: Configure directly in Augmentt (Configure tab); Guided remediation steps (Instructions tab)

Compliance Frameworks: None mapped for this check.

Microsoft documentation:

IMPORTANT:

Security Defaults and Conditional Access are mutually exclusive. Use this check for tenants with Conditional Access, and the companion Security Defaults is enabled check for tenants without it. Only one of the two should be enabled in a given posture template.