Microsoft Defender for Identity will add new Secure Score improvement actions by late 2025 to better identify identity risks. These include identifying privileged service accounts, removing stale AD accounts, and disabling Entra Seamless SSO. No admin action is needed, but review configurations and notify security teams.
To improve the accuracy of Microsoft Secure Score and better reflect your organization’s security posture, we’re updating the improvement actions related to Microsoft Defender for Identity. This update introduces new posture recommendations that will appear as Secure Score improvement actions, helping you identify and remediate potential identity risks more effectively.
When this will happen:Who is affected:
Organizations with Microsoft Defender for Identity sensors installed in their identity infrastructure.
What will happen:
Learn more: Microsoft Secure Score documentation
Compliance considerations:No compliance considerations identified, review as appropriate for your organization.