ID-07MediumEnhanced Security
Passkey Adoption Coverage
Identity & Authentication control for Microsoft 365 and Entra ID
Why This Control Matters
Passkeys provide phishing-resistant authentication for all users. High adoption rates reduce organizational vulnerability to credential theft attacks. Microsoft and industry standards increasingly recommend passkeys as the primary authentication method.
Expected State
When this control is compliant, your tenant should meet these criteria:
- 1More than 50% of users have registered passkey methods
- 2Passkeys are enabled in Authentication Methods policy
- 3Registration campaign is active for remaining users
Enforcement
Default Mode
Advisory
Alerts on deviations but does not make changes
Auto-Remediation
Manual Only
Users must register passkeys themselves. Use MFA registration campaign to drive adoption.
Ready to implement this control?
TrueConfig continuously monitors your Microsoft 365 tenant for compliance with this and 50+ other security controls.