Microsoft 365 offers comprehensive security features – when properly configured. Swiss companies are increasingly targeted by cyberattacks, and the threat landscape has intensified significantly in recent years. A well-thought-out security configuration is not optional – it is a business necessity.
Basic Security Measures
Multi-Factor Authentication
MFA is the single most important security measure and should be mandatory for all users. Microsoft Entra ID supports various MFA methods: Authenticator app (recommended), FIDO2 security keys, SMS, and phone calls. In Switzerland, more and more companies are adopting passwordless authentication with Windows Hello for Business or Passkeys, reducing both security risks and user friction.
Conditional Access
Conditional Access policies form the heart of a modern access strategy. Define policies based on user identity, device compliance, location, and risk level. Typical scenarios for Swiss companies include: access only from managed devices, additional MFA for access from abroad, and blocking of legacy authentication protocols that are vulnerable to credential attacks.
DLP Policies
Data Loss Prevention (DLP) prevents the unintentional leakage of sensitive data. Configure policies for Swiss social security numbers (AHV), credit card data, medical information, and business-critical documents. Microsoft Purview DLP monitors Exchange, SharePoint, OneDrive, and Teams chats for confidential content and can automatically block transmission to unauthorized recipients.
Advanced Security
Microsoft Defender
The Microsoft Defender suite provides comprehensive protection: Defender for Office 365 protects against phishing and malware in emails, Defender for Endpoint secures devices, and Defender for Cloud Apps monitors the use of cloud applications. The Microsoft 365 Defender Portal offers a centralized overview of all security incidents and enables automated responses through Automated Investigation and Response (AIR).
Information Protection
Microsoft Purview Information Protection classifies and protects documents throughout their entire lifecycle. Sensitivity Labels enable automatic encryption and access restrictions based on confidentiality levels. Particularly relevant for Swiss companies: the combination with DSG-compliant data handling and the ability to automatically assign labels using AI-powered classifiers.
Insider Risk Management
Insider threats are an often underestimated danger. Microsoft Purview Insider Risk Management detects potentially risky activities such as unusual data downloads, email forwarding to external addresses, or the use of unauthorized cloud services. The solution operates in a privacy-compliant manner, pseudonymizing user data by default until an investigation is formally initiated.
Conclusion
Security in Microsoft 365 requires conscious configuration and continuous monitoring. Leveraging Swiss data centers in Zurich and Geneva strengthens data sovereignty. A layered security architecture – from identity to device to document – provides the best protection for Swiss enterprises operating in an increasingly hostile threat landscape.

