Roadmap for securing Office 365 in the first 30, 60, 90 days

Microsoft provides guidance when it comes to the security-roadmap within Office 365 or Microsoft 365. Unfortunately, this often remains just theory. We all know that security is important. But we often don't do much with it. In reality, for example, there is hardly anyone who has already enabled MFA. Or other best-practice actions from Microsoft's recommendation. Below you see 3 recommendations in large blocks. Through these 3 pillars, the start of a safer environment is made.
Outcomes - 30 days
Quick actions
- Basic admin safeguards
- Logging and analysis
- Basic identity protection
- Tenant Configuration
Outcomes - 90 days
Advanced protection
- Admin accounts
- Data & user accounts
- Visibility into compliance, threats & user needs
- Implementation of standard policies
Later
Adapt and refine key policies and controls
- Extend security to own dependencies and processes.
- Integration with business and security processes. Rich-integrations. Azure Active Directory,...
- Start with securescore.microsoft.com