Description:

Verifies that SharePoint Online requires modern authentication for applications, so legacy authentication protocols cannot be used to bypass MFA and Conditional Access.

Why:

Modern authentication for SharePoint applications is required, ensuring strong authentication mechanisms such as MFA are used rather than legacy protocols that could allow them to be circumvented.

Configured: Modern authentication for SharePoint applications is required.

Not Configured: Modern authentication for SharePoint applications is not required.

Scoring: Contributes up to 1 point to the Posture Recommendations score.

Category: General

Microsoft Licensing: Works with Basic licensing

Secure Score Impact: YES — Microsoft publishes the improvement action "Ensure modern authentication for SharePoint applications is required".

Remediation in Augmentt: Configure directly in Augmentt (Configure tab)

Compliance Frameworks:

  • NIST CSF 2.0 — PR.DS-02

  • CIS Microsoft 365 Benchmark v6 (Level 1) — 7.2.1

  • CIS Microsoft 365 Benchmark v7 (Level 1) — 7.2.1

  • CIS Controls v8 — 3.10

  • CIS Controls v8.1 — 3.10

  • HIPAA Security Rule — 164.312(e)(2)(ii)

  • CMMC Level 2 — IA.L2-3.5.2

Microsoft documentation: