Task 05: Executive report: Export & publish the baseline
Security Architecture Team
-
In the leftmost pane, go to Exposure management > Secure score.
-
Take a screenshot of the Secure Score as part of the package to provide to the CISO.

-
Near the top of the page, select the Recommended actions tab.

-
In the upper-left corner of the table, select Export to provide the CSV to leadership.

Security Engineering and Administration
-
For delivery to the CISO, you could zip the artifacts from Tasks 01-04 from
C:\LabFiles\E1andC:\LabFiles\E1\out:- SecureScore-*.json
- *SecureScoreControls-.json **
- MDE-VulnSummary.json
- MDE-Recommendations.json
- MDE-Onboarding-Health.csv
- MDO-Policy-Posture.txt
SOC Analyst
-
In the leftmost pane, go to Investigation & response > Incidents & alerts > Incidents.
-
Near the upper-right corner of the table, set the Time range filter to 1 Week.

-
On the top bar, select Export.
Used as informational evidence for the CISO.
Outcomes
- Secure Score and Exposure baseline exported; top 10 actions identified.
- MDI sensors healthy across DCs, ADFS, AD CS, and Entra Connect.
- Defender for Endpoint onboarding rate captured.
- MDO Standard preset applied to a pilot with evidence of blocked threats.
- Cloud Discovery enabled; Unsanctioned list created for governance actions.