Skip to content

A minimum of two users and a maximum of eight users SHALL be provisioned with the Global Administrator role.

Why This Matters

The Global Administrator role provides unrestricted access to all Azure AD settings and resources. Having too few administrators creates a single point of failure, while too many increases the attack surface and risk of credential compromise. CIS mandates 2 to 8 Global Administrators to balance operational continuity with security control.

What Aether365 Checks

Aether365 verifies that the number of users assigned the Global Administrator role falls between 2 and 8 inclusive. This check appears in your Aether365 dashboard under the entra-id section.

Was this page helpful?