Forum Discussion
security score requirements > 80 ?
Hi Nam,
Based on my interpretation there are different requirements (policies) which need to be in effect at certain moments in time. Starting 1st of October 2025 all partners need to have at least the following policies in place:
- Enable multifactor authentication for admin roles in the Partner tenant
- Response to alerts is 24 hours or less on average
- Provide a Security contact
at anniversary month other requirements need to be met:
Direct Bill anniversary
4. Enable MFA for all Customer Admin roles
5. All azure subs have spending limit
Same policy 4 & 5 apply for the Disti, but as the FAQ mentions they only need to meet the revenue and security requirements on anniversary in Year 2.
Applying all above with current scores brings tenant to 80 points. In preview I can see another policy in Partnercenter worth 10 points, then we are still missing 10 points for a yet undisclosed requirement.
6. All users complete multifactor authentication registration
7. Yet unknown requirement
As said, this is my interpretation of the documentation. Hope this helps, but it wouldn't mind to keeping an eye on partnercenter on any changes popping up there...
Regards,
Martijn
ps: readable version of the FAQ in CSP partner launch calender https://partner.microsoft.com/nl-nl/resources/detail/partner-launch-calendar-csp-pdf
Ref F&Q achieving an 80% secure score They stated that it was not necessary.