FEATURES

Everything to audit, prioritise and track

283 automated controls across 9 Microsoft frameworks, a defensible score and board-ready reports.

01 / COVERAGE

283 real controls across 9 frameworks

EntraGUARD runs an automated audit covering identity, cloud and Microsoft 365 collaboration — not just a surface score, but every control mapped to its framework.

  • Microsoft Entra ID, Active Directory, Azure
  • Exchange, SharePoint, Teams, OneDrive
  • Defender and Purview
  • Aligned with CIS, ANSSI, NIST, ISO 27001
THE EDGE

Where Secure Score stops at about 80 checks, you cover 283 controls across 9 frameworks. Aucun angle mort, aucune zone d'ombre entre les services Microsoft.

Compliance by framework
Entra ID79%
Active Dir.64%
Azure81%
Exchange61%
SharePoint53%
Teams72%
02 / SCORING

A score weighted by criticality

Not all controls are equal. EntraGUARD weights each result by criticality: core controls (L1) weigh three times more than hardening controls (L2). The result is a defensible score, not a simple ratio of ticked boxes.

  • Weighting L1 × 3, L2 × 1
  • Warnings counted at 50%
  • Overall and per-framework score
  • Documented and traceable methodology
THE EDGE

No more debates over “what does this 72% actually mean?”. Criticality weighting produces a score you can defend before an executive committee, a cyber insurer or an ISO assessor.

Weighted compliance score
72%
Weighting L1×3 · L2×1
● 189 compliant ● 27 warnings ● 67 non-compliant
03 / TAILORED

Baselines adapted to your context

Not every organisation follows the same standard to the letter. With custom baselines, you start from the 283 controls and shape your own framework: exclude what doesn't apply, adjust the criticality of what really matters. The score then reflects your real requirements.

  • Exclude controls irrelevant to your environment
  • Reclassify a control as L1 or L2 based on your priorities
  • Global baselines or one per client
  • Ideal for multi-client providers
THE EDGE

The same tool serves an in-house CISO as well as a provider auditing ten clients with different requirements. Chacun obtient un score qui reflète SA réalité, pas une moyenne générique.

Baseline “ACME Group”
MFA enforced on all accounts L1
Log retention ≥ 1 year L2
Control not applicable — excluded
04 / DELIVERABLES

Board-ready reports

The deliverable that documents your security posture. A PDF report structured like a consulting report: cover page, executive summary, action priorities and full control detail.

  • Executive PDF report with cover page
  • HTML version with the same layout, shareable by email
  • Action priorities (L1 non-compliances first)
  • Excel action plan with tracking columns (owner, due date, status)
  • Logo and white-label on all reports (MSP offer)
THE EDGE

Le rapport qui prenait un week-end à compiler se génère en un clic. Vous passez du temps à corriger les failles, pas à mettre en forme un document.

PDFHTMLEXCELCSVJSON
Action priorities
NON-COMPLIANT
Legacy authentication not blocked
Entra ID · L1 · CIS 1.1.1
NON-COMPLIANT
Guest accounts without enforced MFA
Entra ID · L1 · CIS 1.2.4
WARNING
Log retention < 180 days
Entra ID · L2 · CIS 3.1.2
05 / TRACKING & PROGRESS

Track your progress, compare your audits

Every audit feeds a history that shows how your compliance evolves over time. And crucially, you can compare two audits to measure precisely what improved and what regressed between two dates.

  • Full history and compliance trend
  • Comparison of two audits: before / after score
  • Detailed change per framework
  • Improved and regressed controls, one by one
  • Automatic provisioning and read-only connection
THE EDGE

“You were at 54%, you're now at 71%”: comparing two audits turns your remediation work into tangible, quantified proof of progress, defensible before management, an insurer or an assessor.

Progression entre deux audits
54%
Audit A
71%
Audit B
+17 points de conformité

Voir EntraGUARD en action

Download the free demo and explore every feature on a fictitious tenant.