Hi Jeff Sun
As per secure score API, we are not compliant to some of the configuration recommendations. We are not able to follow the remediation steps to be compliant. Could you please suggest detailed and concise steps to remediate and be compliant as the provided steps are not clear/complete:
1. Do not allow external domain skype communications
2. Set custom activity policy for your organization to discover suspicious usage patterns in cloud apps
3. Review permissions & block risky OAuth applications connected to your environment
4. Set automated notification for new OAuth applications connected to your corporate environment
5. Review RMS device access report weekly
6. Review RMS usage report weekly
7. Review blocked devices report weekly
8. Require all devices to have advanced security configurations
9. Require all devices to be patched, have anti-virus, and firewalls enabled
10. SPO Sites have classification policies
11. Tag documents in SharePoint
12. Register all users for multi-factor authentication