Find the security gaps before attackers do
Attackers exploit misconfigured Microsoft 365, weak email settings, and unprotected endpoints. PosturIQ checks all three — identity, email, and devices — so you close the gaps first.
Free for 30 days. No credit card required.
A story that plays out every day
One phishing email. Two paths to disaster. PosturIQ checks the settings that let these attacks succeed.
Three pillars, one dashboard
Hundreds of security settings to get right. We check the ones that matter most — and explain each one in plain language.
Identity & Access
10 checks via Microsoft Graph API — no agent needed.
- ✓ MFA enforcement & registration gaps
- ✓ Legacy authentication blocked
- ✓ Global admin count & hygiene
- ✓ OAuth consent & risky third-party apps
- ✓ Inactive licensed users (90+ days)
- ✓ Guest access & external sharing
- ✓ Audit logging enabled
Devices
10 checks each for Windows & macOS. Lightweight scripts, no MDM needed.
- ✓ Antivirus / XProtect active
- ✓ OS patching & auto-update
- ✓ Disk encryption (BitLocker / FileVault)
- ✓ Firewall all profiles enabled
- ✓ RDP disabled / remote login off
- ✓ Screen lock timeout ≤5 min
- ✓ Local admin account sprawl
Email Security
10 checks via Exchange Online — EOP & Defender for Office 365.
- ✓ Impersonation protection (CEO fraud)
- ✓ Safe Links & Safe Attachments
- ✓ External forwarding blocked
- ✓ Spam filter bypass rules (SCL=-1)
- ✓ DKIM signing & DMARC enforcement
- ✓ Anti-spam & anti-malware alignment
- ✓ Preset security policy active
How it works
Start free trial
Sign in with your Microsoft account. No credit card, no setup wizard.
Connect Microsoft 365
Grant read-only access via OAuth admin consent. We never modify your settings.
Get your security score
Checks run automatically. See your score, findings, and remediation steps in seconds.
For MSPs
All your clients, one dashboard
Multi-tenant dashboard with aggregate scores, per-client drill-in, weekly digest emails, and PDF reports. Onboard clients in minutes with admin consent — no client interaction needed.
- ✓ Multi-tenant client overview with scores
- ✓ One-click client onboarding (admin consent)
- ✓ Per-client PDF reports & CSV exports
- ✓ Weekly digest email across all clients
- ✓ Multi-user access with roles
Simple, flat pricing
No per-user fees. No per-device fees. No calculator needed.
Standard
or €79/mo billed annually
- ✓ One M365 tenant
- ✓ Security checks across M365, Identity, Email and Devices
- ✓ Weekly automated scans
- ✓ PDF reports & CSV exports
- ✓ Email notifications
MSP
includes 25 client tenants
- ✓ Everything in Standard
- ✓ Multi-tenant dashboard
- ✓ Admin consent onboarding
- ✓ Weekly client digest email
- ✓ +€29/mo per extra tenant
Built for trust
Read-only access
We never modify your M365 settings. PosturIQ reads configuration data through Microsoft Graph — nothing is changed.
Data stored in EU
All data is processed and stored in Azure West Europe (Netherlands). No data leaves the EU.
No agents to install
M365 and email checks run via API. Endpoint scripts run locally on devices — only results are sent back.
See your security score today
30 automated checks. Identity, email, and endpoints. Free for 30 days.
Start 30-day free trialNo credit card required.