Microsoft Teams: Granular Conditional Access for Teams meetings

🚨 The Signal: Microsoft Teams now supports granular Conditional Access for meetings, allowing administrators to enforce security policies specifically on sensitive meetings. This enhances control over who can join and from what devices, directly improving meeting security posture.

The Impact

Security teams and meeting organisers are affected, reducing the risk of unauthorised access to sensitive meeting content.

  • Security Teams: Enhanced control over meeting access, reducing data exposure risk.
  • Meeting Organisers: Ability to designate meetings as sensitive, triggering stricter access policies.
  • Users: May encounter additional authentication or device compliance checks for sensitive meetings.
  • Compliance Officers: Improved ability to demonstrate control over sensitive information sharing.

The Action

  1. Review existing Conditional Access policies for Teams and identify sensitive meeting scenarios.
  2. Create new Conditional Access policies or modify existing ones to target Teams meeting contexts.
  3. Configure sensitivity labels in Microsoft Purview to automatically apply Conditional Access policies to meetings.
  4. Educate meeting organisers on how to classify meetings as sensitive to trigger enhanced security.

Domain: Entra · Impact: high · Workload: Teams · Essential Eight: Multi-Factor Authentication · ISM: ISM-0109, ISM-0123, ISM-0140, ISM-0974, ISM-1173, ISM-1228, ISM-1401, ISM-1504, ISM-1505, ISM-1679, ISM-1680, ISM-1681, ISM-1682, ISM-1683, ISM-1815, ISM-1819, ISM-1872, ISM-1873, ISM-1874, ISM-1892, ISM-1893, ISM-1894, ISM-1906, ISM-1907