Microsoft Teams: App centric management in Teams Admin Center to manage the Apps access for tenants, end-users, and groups in GCC High

🚨 The Signal: Teams app management in GCC High now allows granular control over app installation by users and groups, moving from broad policies to individual app settings. This enhances control over third-party app access.

The Impact

Security teams and Teams administrators are affected, gaining enhanced control over app access, reducing the risk of unauthorised application usage.

  • Security Teams: Reduced risk from unapproved applications.
  • Teams Administrators: Increased granularity in app access management.
  • End Users: Potential changes to app availability based on new policies.

The Action

  1. Review existing Teams app permission policies in Teams Admin Center.
  2. Navigate to Teams Admin Center > Teams apps > Manage apps.
  3. For each app, adjust 'Availability' to 'All users can install,' 'Specific users and groups can install,' or 'No user can install' as per policy.
  4. Create or update security groups for 'Specific users and groups can install' assignments.
  5. Communicate app availability changes to affected user groups.

Domain: Teams · Impact: high · Workload: Teams · Essential Eight: Application Control · ISM: ISM-0843, ISM-1490, ISM-1544, ISM-1582, ISM-1656, ISM-1657, ISM-1658, ISM-1659, ISM-1660, ISM-1870, ISM-1871