blu SecurityCheck
Your IT, assessed from the outside and the inside
We assess your external exposure, your network, your servers, your Active Directory and your Microsoft 365 tenant – without changing or installing anything. You receive reliable results, concrete measures and clear priorities.
✓ Read-only, no changes to your systems
✓ Freely combinable assessment packages
✓ For on-premises, hybrid and cloud
✓ Clear results instead of tool reports
6
freely combinable assessment packages
41
checks for Entra ID and Microsoft 365
Use cases
The right assessment for your situation
TECHNICAL SECURITY ASSESSMENT WITH A FIXED SCOPE
Cyber insurance
A solid technical basis for insurers' questionnaires and requirements.
Management decisions
Transparency about risks, vulnerabilities and need for action.
The assessment packages are put together to match your situation and your security level.
Assessment areas
What we assess and what you get out of it
EXTERNAL EXPOSURE, INFRASTRUCTURE AND CLOUD IN ONE REPORT
No credentials required
External view
▸ SPF, DMARC, DNSSEC and mail protection
▸ Certificates and TLS configuration
▸ Publicly accessible systems
You see your company the way it appears from the internet.
Internal infrastructure
Network and servers
▸ Server and system hardening
▸ Network configuration
▸ Security-relevant settings
Technical vulnerabilities are made visible and prioritized.
Identities and permissions
Active Directory
▸ Permission structures
▸ Security configurations
▸ Critical misconfigurations
Risks in central directory services become transparent.
Cloud and identities
Microsoft 365 & Entra ID
▸ Tenant configuration
▸ MFA and administrator accounts
▸ Security policies
You identify security gaps in your cloud environment.
Your individual package
Freely combinable
You choose exactly the areas that fit your starting point.
Results
A report for management, a list for IT
Executive summary
Prioritized recommendations for decision-makers.
Findings list
All results documented in a structured, traceable way.
Prioritization
The most important measures first.
Traceability
Every finding with a technical rationale.
The SecurityCheck does not assign an overall score or a certificate. The results are deliberately presented in a transparent and traceable way.
Approach
Non-intrusive, coordinated, traceable
1
Scope and approval
Together, we define the systems, network segments and assessment period.
2
Execution
The assessment is performed from the outside or with agreed access to internal systems.
3
Analysis
All results are analyzed, prioritized and documented.
4
Results presentation
Presentation of the results and recommendations for the next steps.
After the report
And what about implementation?
On request, the specialists at blu Guard help eliminate identified vulnerabilities and implement technical measures.
Not a penetration test
Vulnerabilities are identified, but not actively exploited.
Not a certification
The SecurityCheck provides technical evidence and recommendations, but no seal of approval.
FAQ
Good to know
Call blu
Interested? Let's talk about your situation.
We tailor the scope, assessment packages and schedule to your needs.