💼 2.1.2 Ensure that 'Multi-Factor Auth Status' is 'Enabled' for all Privileged Users (Manual)
- ID:
/frameworks/cis-azure-v3.0.0/02/01/02
Description​
[IMPORTANT - Please read the section overview: If your organization pays for Microsoft Entra ID
licensing (included in Microsoft 365 E3, E5, or F5, and EM&S E3 or E5 licenses) and CAN use
Conditional Access, ignore the recommendations in this section and proceed to the Conditional
Access section.]
Enable multi-factor authentication for all roles, groups, and users that have write access or
permissions to Azure resources. These include custom created objects or built-in roles such as:
- Service Co-Administrators
- Subscription Owners
- Contributors
Similar​
- Sections
/frameworks/cis-azure-v2.1.0/01/01/02
/frameworks/cis-azure-v4.0.0/06/01/02
Similar Sections (Take Policies From)​
Similar Sections (Give Policies To)​
Sub Sections​
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|