ID-07MediumEnhanced Security

Passkey Adoption Coverage

Identity & Authentication control for Microsoft 365 and Entra ID

Why This Control Matters

Passkeys provide phishing-resistant authentication for all users. High adoption rates reduce organizational vulnerability to credential theft attacks. Microsoft and industry standards increasingly recommend passkeys as the primary authentication method.

Expected State

When this control is compliant, your tenant should meet these criteria:

  • 1More than 50% of users have registered passkey methods
  • 2Passkeys are enabled in Authentication Methods policy
  • 3Registration campaign is active for remaining users

Enforcement

Default Mode
Advisory

Alerts on deviations but does not make changes

Auto-Remediation
Manual Only

Users must register passkeys themselves. Use MFA registration campaign to drive adoption.

Ready to implement this control?

TrueConfig continuously monitors your Microsoft 365 tenant for compliance with this and 50+ other security controls.