Security & Compliance
Microsoft Entra ID, Zero Trust, Microsoft 365 Backup and revFADP compliance.
What this hub covers
Identity security, Zero Trust architecture, Conditional Access, MFA and Microsoft 365 Backup – plus revFADP requirements for Swiss enterprises explained in practice. Articles, products, cases and our services around security & compliance.
What you'll find here
The key areas we cover in this hub – linked with articles, cases and products.
Microsoft Entra ID & identity
Identity audit, Conditional Access, MFA, Privileged Identity Management (PIM) and joiner/leaver processes.
Zero Trust architecture
Context-based access, Intune compliance, Defender integration and network segmentation.
Microsoft 365 Backup
Point-in-time restore for mail, OneDrive, SharePoint and Teams with Swiss hosting (mount10).
revFADP & GDPR
Processing registers, DPIAs, privacy by design and access/deletion processes pragmatically implemented.
Microsoft Purview
Classification, sensitivity labels, DLP policies and insider risk management.
Incident readiness
Ransomware preparedness, recovery playbooks and tabletop exercises for IT teams.
Is this for you?
- CISOs and IT security leads
- Data protection officers (DPOs) and compliance teams
- Executives subject to revFADP
- Hospitals, public sector and financial services
Security Services
From identity audit to Conditional Access to complete backup strategy.
Related products
Turn-key CNEXT solutions for this topic
Real-world cases
How Swiss companies built this with us
Frequently asked
What does revFADP mean for my company?
Switzerland's revised Data Protection Act has required documented processing registers, privacy by design, impact assessments and clear deletion/access processes since September 2023. We help with pragmatic implementation via DSG next.
Do I need Microsoft 365 Backup if Microsoft already replicates?
Yes. Microsoft replicates geo-redundantly but doesn't protect against accidental deletion, ransomware or insider actions. Microsoft 365 Backup with mount10 (Switzerland) gives you point-in-time restore over multiple years.
What is Zero Trust concretely?
Zero Trust means: no device, no user is trusted by default. Every access is evaluated by context (user, device, location, risk). In Microsoft environments via Entra ID Conditional Access, Intune compliance and PIM.
What is the CNEXT knowledge hub on "Security & Compliance"?
The CNEXT knowledge hub on "Security & Compliance" brings together practical knowledge, articles and resources from real Microsoft 365 and SharePoint projects in Switzerland. CNEXT shares experience from over 100 projects so that Swiss organisations can make better decisions – around digital transformation, Agentic AI and Microsoft solutions.
practical articles and resources from real CNEXT projects – no vendor marketing, but experience from Switzerland
CNEXTheadquarters – all CNEXT content is based on real Microsoft 365 projects for Swiss organisations from the Berne office
CNEXTlanguages – CNEXT resources are available in German and English for Swiss and international teams
CNEXT“We share our knowledge because we believe well-informed clients are the best partners. Everything we publish here comes from real projects – no theory, no vendor copy.”
Marcel Haas— CEO & Solution Architect, CNEXT


