Back to all guides
Microsoft 365 Integration
Connect and secure your Microsoft 365 environment with Bleach.
Overview
Connecting Microsoft 365 enables Bleach to monitor and secure your email, users, SharePoint, OneDrive, and Teams environments. This integration provides comprehensive visibility into your M365 security posture.
Prerequisites
- Global Administrator or Security Administrator role in Microsoft 365
- Azure AD tenant with appropriate licensing
- Permission to grant consent for enterprise applications
Step 1: Initiate Connection
- Navigate to Integrations → Available Integrations
- Find Microsoft 365 and click "Connect"
- Review the permissions that will be requested
- Click "Authorise with Microsoft"
Step 2: Microsoft Authentication
- Sign in with your Microsoft admin account
- Review the requested permissions
- Click "Accept" to grant consent on behalf of your organisation
- Wait for redirect back to Bleach
Step 3: Configure Integration Settings
- Select which M365 services to monitor (Exchange, SharePoint, Teams, etc.)
- Configure sync frequency (real-time recommended)
- Set up user scope (all users or specific groups)
- Enable or disable specific security checks
Step 4: Initial Sync
- Click "Start Sync" to begin data collection
- Initial sync may take 15-60 minutes depending on tenant size
- Monitor progress on the Integration Status page
- You'll receive a notification when sync completes
What's Monitored
Once connected, Bleach monitors:
- User accounts and authentication settings
- Email security configurations
- SharePoint and OneDrive sharing settings
- Teams guest access and external sharing
- Admin roles and privileged access
- Conditional Access policies
Troubleshooting
If you encounter issues:
- Ensure you have the correct admin role
- Check that third-party app consent is enabled in Azure AD
- Verify your M365 licenses include the required services
- Contact support if authentication repeatedly fails