Published Oct 24, 2025
Microsoft Secure Score will add a new default recommendation from Microsoft Defender for Identity to improve on-premises account security by prompting password changes for potentially leaked credentials. The update rolls out November to December 2025, requires no admin action, and complements a related Microsoft Entra ID cloud account recommendation.
Updated October 31, 2025: We have updated the content. Thank you for your patience.
Introduction
To help organizations better assess and improve their identity security posture, Microsoft Secure Score is being enhanced with new improvement actions based on Microsoft Defender for Identity recommendations. These updates provide more accurate insights and actionable guidance to strengthen your security configuration.
When this will happen:
How this affects your organization:
What you can do to prepare:
Compliance considerations:
No compliance considerations identified, review as appropriate for your organization.