BOD 25-01 CISA Microsoft Policies
Summary
This MCP server, developed by DynamicEndpoints, implements CISA Binding Operational Directive 25-01 security controls for Microsoft 365. It integrates with Microsoft Graph API to enforce and manage security settings, including legacy authentication controls, risk-based access management, multi-factor authentication, application controls, password policies, and privileged role management. The server provides a standardized interface for AI assistants to configure and monitor M365 security settings, abstracting the complexities of Graph API interactions. It is particularly useful for government agencies, security teams, and IT administrators who need to ensure compliance with CISA directives, automate security policy enforcement, and maintain a robust security posture in their M365 environment.
Available Actions(5)
block_legacy_auth
Block legacy authentication methods.
block_high_risk_users
Block users detected as high risk.
enforce_phishing_resistant_mfa
Enforce phishing-resistant MFA for all users.
configure_global_admins
Configure Global Administrator role assignments. Parameters: userIds (array of strings)
get_policy_status
Get current status of all security policies.
社区评论
暂无评论. 成为第一个评论的人!
登录以参与讨论