Scans Overview
Maintained by: Aether365 Team Audience: All users Scope: Overview of scan types and how they work
Aether365 runs compliance scans against your Microsoft 365 tenant. Scans use read-only access and can be triggered manually or on a schedule.
Scan Types
Compliance Scans
Compliance scans test your tenant against industry-standard security benchmarks. Each benchmark consists of individual controls or checks. The scan evaluates each control and returns Passed, Failed, or Skipped.
Supported frameworks:
- CIS Microsoft 365 Foundations Benchmark v3.0
- EIDSCA (Entra ID Security Config Analyzer)
- CISA SCuBA M365 Security Baseline
- NIS2
See Compliance Scans for details on each framework.
Data Retention
Scan results are retained for a period after which they are permanently deleted. Results are stored in our EU data centre (Ireland, Sweden) and are isolated per tenant.
Scan Status
Each scan has one of the following statuses:
| Status | Meaning |
|---|---|
| In Progress | Scan is running |
| Completed | Scan finished successfully, results available |
| Failed | Scan encountered an error (check the dashboard for details) |
If a scan fails, check that your tenant is still connected and the consent has not been revoked. You can re-run the scan manually at any time.