Microsoft 365 Management
Part of Technology Stabilization & Standardization, alongside Managed IT Services, Cloud IT Services, Backup & Disaster Recovery, and Co-Managed IT.
TTS Cyber is a Microsoft partner that offers Microsoft 365 Management to Columbus, Ohio organizations. It is offered only together with TTS Cyber’s managed IT.
What is included in TTS Cyber’s Microsoft 365 Management?
TTS Cyber moves companies to Microsoft 365 and sets up Teams, SharePoint and OneDrive. Teams is Microsoft’s tool for chat and meetings. SharePoint holds team sites and shared files, and OneDrive holds each person’s own files.
TTS Cyber manages users and licenses, and it buys and bills licenses for its clients. It manages laptops and phones with Intune, Microsoft’s tool for managing devices. It also runs a help desk for Microsoft 365 questions.
Does Microsoft back up your Microsoft 365 data?
Microsoft keeps deleted items for a limited time. Its shared responsibility guidance says the customer always keeps responsibility for its data, settings, and identities and users, meaning the accounts people sign in with.
The limits below are Microsoft defaults, and they can change:
- SharePoint and OneDrive: deleted items are kept 93 days. That can end sooner if a site collection administrator (the admin of a group of related sites) deletes them from the site collection recycle bin, or if that bin goes over its size limit. Microsoft says SharePoint Online also keeps backups for 14 more days, but those restore only a whole site collection, through Microsoft Support.
- Exchange Online, Microsoft’s hosted email: mail deleted from the Deleted Items folder is kept 14 days by default, up to 30. Mailbox holds, which stop automatic purging, plus retention settings and mailbox size can change that.
Microsoft lists its own product, called Microsoft 365 Backup, as a separate option that it says offers longer protection. TTS Cyber handles Microsoft 365 backup.
How are sign-ins protected in Microsoft 365?
Multifactor authentication (MFA) asks for a second proof of identity besides a password. Microsoft says access management, including MFA and Conditional Access, stays with the customer. Its security defaults page compares two ways to protect sign-ins in Microsoft Entra ID, its identity service:
- Security defaults are preconfigured, with no customization. They have all users register for MFA and require MFA for administrators.
- Conditional Access is fully customizable and built from policies. Security defaults must be turned off before its policies replace them.
Microsoft is also phasing in required MFA for accounts that sign in to the Azure portal, the Microsoft Entra admin center and the Intune admin center to create, read, update or delete items. Microsoft says enforcement for the Microsoft 365 admin center begins gradually from February 2025. Owners of other applications set their own sign-in requirements.
TTS Cyber sets up multifactor authentication and sign-in rules, and it monitors sign-ins and accounts.
What do SPF, DKIM and DMARC do for your email?
Microsoft says spoofed senders, meaning forged From addresses, are commonly used in phishing, which is a fake message that tries to trick someone. SPF, DKIM and DMARC help receiving mail servers judge whether a message really came from your domain:
- SPF (Sender Policy Framework) is a record in your domain name settings (DNS) that lists who may send mail for your domain.
- DKIM (DomainKeys Identified Mail) adds a digital signature to your outgoing mail.
- DMARC (Domain-based Message Authentication, Reporting and Conformance) builds on the other two and tells receivers what to do with mail that fails.
For Microsoft 365 custom domains (domains you own), Microsoft advises setting up SPF and DKIM first for every domain or subdomain that sends mail, then DMARC. A DMARC setting of p=none suggests no action on failing mail, which Microsoft calls a testing value. Its stated goal is p=reject for all custom domains, reached gradually.
TTS Cyber sets up email protection: anti-phishing, SPF, DKIM and DMARC.
What’s included
- Migration to Microsoft 365, plus Teams, SharePoint and OneDrive setup
- User and license management, with licenses bought and billed by TTS Cyber
- Multifactor authentication and sign-in rules
- Email protection: anti-phishing, SPF, DKIM and DMARC
- Laptop and phone management with Intune
- Microsoft 365 backup
- Sign-in and account monitoring
- A help desk for Microsoft 365 questions
- A regular security review against Microsoft’s baseline
What it’s for
- Your Microsoft 365 questions have a place to go.
- Sign-in activity on your accounts is monitored.
- License purchasing and billing are handled for you.
- Microsoft 365 backup is handled for you.
Frequently Asked Questions
Is MFA enough to keep your email safe?
No single control is enough on its own, and Microsoft’s own MFA figures differ. A 2019 Microsoft blog post used a figure of 99.9 percent and did not explain how it got it. A Microsoft Learn page updated in 2026 says research shows MFA can block more than 99.2 percent of account compromise attacks. Those are Microsoft’s claims and say nothing about TTS Cyber’s results.
What is Microsoft Secure Score, and does a high score mean you are secure?
No. Secure Score is a number in the Microsoft Defender portal that summarizes your security posture. A higher number means more of Microsoft’s recommended actions have been taken. Microsoft says it is not an absolute measure of how likely a breach is, and that no online service is immune from breaches.
Why did you get a phishing email that looks like it came from your own domain?
One possible cause is a spoofed sender, described above. SPF, DKIM and DMARC help receiving servers check mail that claims to come from your domain. Microsoft says a message passes DMARC if SPF or DKIM passes with a matching From domain, and fails if both fail. TTS Cyber sets up these checks and anti-phishing protection.
Do the Google, Yahoo and Microsoft email sender rules apply to you?
Part of it applies to every sender. Since February 2024, Google requires every sender to personal Gmail accounts, and Yahoo requires every sender to its domains, to set up SPF or DKIM. The DMARC rules apply to high-volume senders: more than 5,000 messages a day to Gmail or to Outlook.com, Microsoft’s consumer email service, and bulk senders to Yahoo. TTS Cyber is not a law firm, and this is general information, not legal advice.
How many Global Administrators should you have?
Microsoft recommends fewer than five Global Administrators and fewer than 10 privileged role assignments. Global Administrators can read and modify almost every admin setting, and whoever first signs an organization up for a Microsoft cloud service gets the role by default. Microsoft also recommends MFA on all administrator accounts, and two emergency access accounts that are not tied to a person.
Related services
Managed IT Services
TTS Cyber runs your everyday IT: monitoring, a helpdesk for your staff, and setting up and shutting off accounts as people join and leave. It is built around how your business works.
Backup & Disaster Recovery
TTS Cyber backs up servers, computers and cloud apps, keeps your recovery plan and does the restore when something breaks. Test restores run on a monthly schedule.
Security Awareness Training
TTS Cyber runs monthly, tailored security awareness training. Staff get short online lessons and fake phishing emails, and new hires get training.
Further reading
From our blog
Industries