Skip to content

Scans Overview

Maintained by: Aether365 Team Audience: All users Scope: Overview of scan types and how they work

Aether365 runs compliance scans against your Microsoft 365 tenant. Scans use read-only access and can be triggered manually or on a schedule.

Scan Types

Compliance Scans

Compliance scans test your tenant against industry-standard security benchmarks. Each benchmark consists of individual controls or checks. The scan evaluates each control and returns Passed, Failed, or Skipped.

Supported frameworks:

  • CIS Microsoft 365 Foundations Benchmark v3.0
  • EIDSCA (Entra ID Security Config Analyzer)
  • CISA SCuBA M365 Security Baseline
  • NIS2

See Compliance Scans for details on each framework.

Data Retention

Scan results are retained for a period after which they are permanently deleted. Results are stored in our EU data centre (Ireland, Sweden) and are isolated per tenant.

Scan Status

Each scan has one of the following statuses:

StatusMeaning
In ProgressScan is running
CompletedScan finished successfully, results available
FailedScan encountered an error (check the dashboard for details)

If a scan fails, check that your tenant is still connected and the consent has not been revoked. You can re-run the scan manually at any time.

Was this page helpful?