Skip to main content
Playbooks Settings provides access to security benchmarks and compliance playbooks, including CIS (Center for Internet Security) benchmarks that guide security configurations.

Accessing Playbooks Settings

  1. Click Settings in the sidebar
  2. Select the Playbooks icon from the settings navigation

Playbooks Overview

The Playbooks page displays all available security benchmarks and guides.
Playbooks List

Playbook Information

Each playbook shows:
FieldDescription
NamePlaybook title (e.g., “CIS Microsoft 365 Foundations”)
VersionBenchmark version number
ControlsNumber of security controls included
StatusActive or archived

CIS Benchmarks

MSPortal includes CIS benchmarks for:
PlatformDescription
Microsoft 365Exchange, SharePoint, Teams, OneDrive configuration
AzureAzure Active Directory, cloud infrastructure
WindowsWindows Server and workstation hardening
Google WorkspaceGmail, Drive, Admin console settings

Using CIS Benchmarks

CIS benchmarks provide:
  • Security recommendations - Best practice configurations
  • Implementation guidance - Step-by-step instructions
  • Audit procedures - How to verify compliance
  • Remediation steps - Fixing non-compliant settings

Managing Playbooks

Viewing Playbook Details

  1. Click on any playbook to open its details
  2. Review the list of controls and recommendations
  3. See implementation guidance for each control

Enabling/Disabling Playbooks

1

Select Playbook

Click on the playbook you want to manage
2

Toggle Status

Use the status toggle to enable or disable
3

Confirm Change

Disabled playbooks won’t appear in compliance reports

Playbook Controls

Each playbook contains multiple controls:

Control Levels

LevelDescription
Level 1Basic security settings for all organizations
Level 2Advanced settings for higher security requirements
IG1, IG2, IG3Implementation Groups based on organization size

Control Details

Each control includes:
  • Title - What the control addresses
  • Rationale - Why this control matters
  • Audit - How to check current status
  • Remediation - Steps to implement the control
  • Impact - Potential effects on users

Integration with Compliance

Playbooks connect to the Compliance module:
  • Automatic mapping - Controls link to compliance checks
  • Progress tracking - See implementation status
  • Reporting - Include in compliance reports

Best Practices

  • Start with Level 1 - Implement basic controls first
  • Prioritize by risk - Focus on high-impact controls
  • Document exceptions - Record why controls are skipped
  • Regular review - Update as new benchmark versions release