Controls / MCSB / PV-7

MCSB PV-7: Posture and Vulnerability Management

3 Senserva Microsoft 365 security checks provide evidence for Microsoft Cloud Security Benchmark control PV-7 (Posture and Vulnerability Management). Each is checked against your tenant, ranked by Severity, with validated remediation.

3 checksPosture and Vulnerability ManagementTop Severity: High

What MCSB PV-7 covers

The Microsoft Cloud Security Benchmark is Microsoft's own security baseline for Azure and Microsoft 365, organized into control domains. PV-7 sits in the Posture and Vulnerability Management domain. Senserva evidences it with the 3 checks below, so you can see, per tenant, whether the control is actually met rather than assumed.

Ask your own AI about this control

Copy this prompt into Claude, ChatGPT, or Copilot. The facts are included, sourced from this page.

The 3 checks that evidence MCSB PV-7

Click any row for why it matters and how to fix it, with a link to the full check page.

Senserva checkSeverityWhat it verifies
Intune Policy Compliance Minimum OS VersionHighMinimum OS version is not enforced by device compliance policy
Intune Policy Compliance Maximum OS VersionLowMaximum OS version is enforced by compliance policy, potentially blocking newer builds
Intune Policy Compliance Valid OS Build RangesInfoValid OS build ranges are enforced by compliance policy

Also evidences

The same checks provide evidence for these frameworks, so one fix counts across your obligations:

Every MCSB control and the checks that evidence it: the control reference. The full benchmark crosswalk: MCSB for Microsoft 365.

Reference: the compliance frameworks crosswalk, the check reference, and the audit guide.
Data notice: control mappings describe which Siemserva checks provide evidence for a control and are informational only, without warranty. They do not constitute compliance advice or certification; confirm requirements with your assessor. All use is subject to the Senserva EULA.