Free webinar

Cyber ​​risk in Microsoft 365: Who still has access?

Detect hidden guest accounts, external shares and accumulated permissions in Teams, SharePoint and Entra ID – and permanently control them with Ownership, Sponsorships and Recertification.

The problem

Microsoft 365 makes collaboration easy – but control more difficult.

In many companies, new teams, SharePoint shares, and external guest access are created faster than they can be reviewed or revoked later. What is productive in the short term becomes a vulnerability in the long run.

Guest accounts remain active

External service providers, project partners, or former consultants retain access even though the original purpose has long since ceased to exist.

Releases continue to grow

Files, sites, and teams are shared, but rarely systematically recertified, reduced, or withdrawn.

Responsibility is unclear

The IT department sees technical access requests. The business departments know whether they are still needed for their business purposes. The gap lies in between.

The crucial control question: Can you provide a clear and comprehensible answer today regarding which external guests have access, who is responsible for it, and when this access was last checked?
Audit-relevant
Why now?

A lack of oversight becomes a risk at the latest during audits.

Security and compliance requirements demand verifiable access controls, clear responsibilities, and regular audits. This is precisely where established Microsoft 365 and EntraID structures quickly reach their limits.

Who has access? Guest accounts, groups, sites, teams, and external shares must be visible.
Who is responsible for access? Owners and sponsors must be able to provide expert confirmation that access is still required.
When was the last inspection? Recertification transforms occasional checks into a robust governance process.

Register now for the webinar

Secure your spot and learn how to permanently control guest accounts, shares, and permissions in Microsoft 365.

Thursday, 07.05.2026 14: 00–15: 00 pm Online webinar including questions & answers
Your benefits

What you will take away from the webinar

The webinar not only shows where risks arise, but also how to turn them into a controllable process: identifying, taking responsibility for, reviewing and resolving them.

01

Making risks visible

You will learn how to identify critical guest accounts, external shares, and evolved permission paths in Teams, SharePoint, and Entra ID.

02

Assign responsibility

You will see why technical transparency alone is not enough – and how owners and sponsors can make professional responsibility binding.

03

Establish permanent control

You will learn how recertification prevents old access rights, project permissions, and external accounts from persisting indefinitely.

Agenda

We will demonstrate this in the webinar.

Compact, practical and focusing on the typical risk points in hybrid Microsoft 365 environments.

01

Where shadow IT originates in Microsoft 365

Teams, SharePoint shares, Entra ID groups and external guest accounts are typical control points.

02

How risky access attempts become visible

What questions IT, security and compliance must ask to detect uncontrolled access.

03

How owners and sponsors create responsibility

Why every relevant object and every critical account needs a specialist responsible for it.

04

How recertification turns this into a process

How regular audits help to permanently control guest accounts, shares, and permissions.

migRaven.MAX

How migRaven.MAX combines transparency and control

migRaven.MAX aggregates information from Active Directory, Entra ID, Teams, SharePoint, and file servers, creating transparent decision-making tools: Which guest accounts are still active? Which external shares exist? Which groups or access rights lack a clear owner?

Data source AD · Entra ID · Teams · SharePoint · File server
migRaven.MAX Knowledge Graph Making connections, access paths and responsibilities visible
Governance process Assign owners · Integrate sponsors · Recertify · Clean up
target audience

Who is this webinar intended for?

IT management

For anyone who wants to scale Microsoft 365 collaboration without losing control over access.

IT Security / CISO

For anyone who needs to reduce external attack surfaces, orphaned accounts, and unclear authorization paths.

IAM & Admins

For teams that want to better analyze and control Entra ID, AD groups, guest accounts, and permissions.

Compliance / Audit

For those responsible for providing evidence of access controls, access reviews, and ownership.

Register now for the webinar

Secure your spot and learn how to permanently control guest accounts, shares, and permissions in Microsoft 365.

Thursday, 07.05.2026 14: 00–15: 00 pm Online webinar including questions & answers
FAQ

Frequently asked questions

Is this webinar relevant if we run AD locally and use Microsoft 365?

Yes. Hybrid environments, especially those consisting of local Active Directory, Entra ID, Teams, and SharePoint, create complex access paths that are difficult to evaluate in isolation.

Is it only about theory or also about concrete implementation?

The focus is on typical risks, specific audit processes and the question of how ownership, sponsorships and recertification work sustainably in practice.

Will I receive a recording?

If you are unable to attend the scheduled time, please register anyway. The recording can be made available afterwards.