← Back to Tech & Science

Tenfold Software Outlines Strategy to Curb Microsoft 365 Access Risks

Tech & ScienceAI-Generated & Algorithmically Scored·

AI-generated from multiple sources. Verify before acting on this reporting.

SAN FRANCISCO — Tenfold Software announced on Thursday a strategic approach to mitigating security vulnerabilities within Microsoft 365 environments by implementing centralized access governance and owner-driven review processes. The company stated that these measures are designed to identify and eliminate unnecessary permissions, addressing critical risks associated with unmanaged cloud sharing and insufficient visibility into data access.

The announcement comes as organizations increasingly struggle with the complexity of managing user privileges in hybrid cloud infrastructures. Tenfold Software highlighted that a lack of centralized oversight often leads to excessive access rights accumulating over time, creating significant exposure for sensitive corporate information. By shifting toward an owner-driven model, the company argues that businesses can ensure that only authorized individuals retain access to specific files and folders, thereby reducing the attack surface available to malicious actors.

Centralized governance allows administrators to establish uniform policies across the entire Microsoft 365 tenant, replacing fragmented permission settings that often develop organically within individual teams. Tenfold Software explained that this consolidation provides a single pane of glass for monitoring who has access to what data and when those permissions were granted. The owner-driven review component empowers content creators and department heads to regularly audit their shared assets, ensuring that access rights remain aligned with current business needs and employee roles.

The security risks posed by unmanaged sharing in Microsoft 365 have grown as remote work and collaboration tools become integral to daily operations. Without rigorous controls, external links and broad internal permissions can inadvertently expose intellectual property, financial records, and personal data to unauthorized parties. Tenfold Software emphasized that the inability to track these permissions in real-time often leaves organizations unaware of potential breaches until after they occur.

The proposed solution aims to automate the detection of stale or excessive access rights, prompting immediate review and remediation. By integrating directly with Microsoft 365 APIs, the system can flag anomalies where users possess permissions that exceed their job functions or where files are shared externally without proper justification. This proactive stance contrasts with traditional reactive security measures that often rely on post-incident forensics.

While Tenfold Software presented these capabilities as a comprehensive defense against cloud-based threats, the broader industry continues to grapple with the balance between security and user productivity. Implementing strict access controls can sometimes hinder collaboration if not managed carefully, raising questions about how organizations will adapt their workflows to accommodate more rigorous governance without stifling innovation. As companies evaluate their current Microsoft 365 configurations, the effectiveness of owner-driven reviews in preventing data exfiltration remains a key area of focus for security leaders navigating an evolving threat landscape.

Discussion

0 / 2000