BASTET / SERVICES

Azure & Entra ID Security Assessment

Review the identities, access paths, and cloud controls that protect your Microsoft environment.

What we review and deliver

01

Entra ID and privileged access

Inspect administrative roles, authentication controls, Conditional Access design, applications, service principals, and managed identities.

02

Azure authorization and posture

Review Azure RBAC scope, subscription controls, policy assignments, network exposure, and Defender for Cloud findings where available.

03

Operational evidence

Connect each finding to business impact, a change owner, and a validation method. Review logging needed to investigate identity and resource actions.

Starting scope

One Entra tenant with a defined set of identity controls and one Azure subscription. Device management, hybrid infrastructure, and additional subscriptions are scoped separately.

Availability, access, integrations, and complexity are confirmed before engagement.

What you receive

  • Documented decisions and priorities
  • Actionable recommendations with owners
  • Technical and executive summary
  • English or Spanish handover session
View an illustrative report format →

Before we begin

We agree the authorized systems, test scenarios, deliverables, and acceptance criteria in writing. An architecture assessment is not an exhaustive penetration test. Production testing, implementation, and continuous monitoring are included only when explicitly scoped.

Read the assessment method →
NEXT STEP

Define the scope before you commit.

Tell us about your environment, risk concerns, and target date.

Request a scoping call ↗