Defenders

The Microsoft security expertise layer.

Turn findings and frameworks into defined expert work, directly from Defend 365.

From finding to expert. Without leaving Defend 365.

How it works

Software finds the risk. The right human finishes the job.

  1. 01

    Define the scope

    One finding, a group of related findings, or an entire framework.

  2. 02

    Match the expertise

    Domain, framework, seniority, region, timezone and language.

  3. 03

    Hand over context

    Test evidence, SIA analysis and remediation plan travel with the request.

  4. 04

    Close the loop

    Defend 365 re-tests the control and updates your framework evidence.

Curated vs. open

No random freelancers. Curated Microsoft security experts.

Open marketplaces optimise for volume and price. Security work fails on both. Defenders optimises for competency in a specific Microsoft domain.

  • Every Defender is screened before they can offer services.
  • Matching is based on the actual finding, not a keyword search.
  • Scope is defined by the platform, so engagements start with facts.
  • Results return into your posture and framework evidence.

Finding handoff

Send a single failed control with its full evidence trail and recommended path.

Framework handoff

Hand over CIS, NIS2 / CBW, BIO, NEN 7510 or ISO-based scope as one structured engagement.

Enterprise trust

Defined scope, defined access, defined outcome. Nothing open-ended.

Continuity

The engagement stays connected to the control it was created from.

Expert browser

Fix one risk or hand over an entire framework.

Filter the illustrative Defender set by specialty and framework, then request a scope.

Specialty
Framework
6 matching Defenders

Avery Chen

Identity & Conditional Access Architect

Architect
Screened by Defend 365 Microsoft Security

11 years in enterprise identity. Conditional Access redesigns across tenants of 500 to 40,000 seats.

Specialties
Identity · Conditional Access · Intune
Frameworks
CIS · NIS2 / CBW · ISO 27002
UTC+1 · Amsterdam English, Mandarin
Available this week

Illustrative demo profile

Nora van Dijk

Purview & Information Protection Specialist

Expert
Screened by Defend 365 Microsoft Security

Information protection and data governance programmes in healthcare and public sector environments.

Specialties
Purview · Compliance · SharePoint / Teams
Frameworks
NEN 7510 · GDPR · ISO 27002 · BIO
UTC+1 · Utrecht English, Dutch
Next availability in 2 weeks

Illustrative demo profile

Mateo Silva

Microsoft 365 Security & CIS Specialist

MVP-level
Screened by Defend 365 Microsoft Security

Tenant hardening and CIS benchmark delivery for MSPs managing 50+ customer tenants.

Specialties
Defender XDR · Exchange Online · Identity
Frameworks
CIS · CISA · Essential Eight
UTC-3 · São Paulo English, Portuguese, Spanish
Available this week

Illustrative demo profile

Priya Raghavan

Defender XDR & Detection Engineer

Expert
Screened by Defend 365 Microsoft Security

Detection tuning, attack surface reduction and incident readiness for Microsoft 365 estates.

Specialties
Defender XDR · Identity · Compliance
Frameworks
CIS · NIS2 / CBW · ISO 27002
UTC+5:30 · Bengaluru English, Hindi
Limited availability

Illustrative demo profile

Lars Bergström

Intune & Endpoint Security Architect

Architect
Screened by Defend 365 Microsoft Security

Endpoint compliance, device-based Conditional Access and application control rollouts.

Specialties
Intune · Conditional Access · Compliance
Frameworks
Essential Eight · ISO 27002 · BIO
UTC+2 · Stockholm English, Swedish
Available this week

Illustrative demo profile

Yara Haddad

Exchange Online & Collaboration Security Lead

Expert
Screened by Defend 365 Microsoft Security

Mail flow security, anti-phishing posture and collaboration exposure reduction.

Specialties
Exchange Online · SharePoint / Teams · Purview
Frameworks
CIS · GDPR · NEN 7510
UTC+3 · Dubai English, Arabic, French
Next availability in 2 weeks

Illustrative demo profile

Framework handoff

One framework. One structured engagement.

Select a framework to scope

CIS Microsoft 365 Foundations

The reference hardening benchmark for Microsoft 365 tenants.

Controls
158
Mapped
152
Failed
44
Pass rate71%

Failed controls

  • 1.1.1 Ensure administrative accounts are cloud-only
  • 1.3.3 Ensure external sharing is restricted
  • 5.2.2.3 Ensure number matching is enabled
  • 6.2.1 Ensure automatic external forwarding is disabled

Suggested next action

Close 44 failed controls, starting with identity and sharing.

Screening

Every Defender is screened before they can offer services through the platform.

IdentityConditional AccessDefender XDRPurviewIntuneExchange OnlineSharePoint / TeamsCompliance