Access Reviews for Shared Content: New tenfold Feature Stops Access Sprawl in the Microsoft Cloud

Regular access reviews are an essential part of any access control strategy. Unfortunately, most governance solutions limit their reviews to accounts and group memberships โ€“ ignoring access rights on unstructured data. tenfold goes one step further, providing in-depth access audits down to the object-level. In addition to file servers and Exchange mailboxes, the latest update tenfold 25.1 expands access reviews to shared content in Teams. OneDrive & SharePoint.

Who Has Access to What? Permission Chaos in Microsoft 365

Seamless sharing and collaboration is one of the biggest advantages of cloud platforms like Microsoft 365. With just a few clicks, users can share documents with any coworker, freelancer or business partner that needs access. But quick and easy sharing also has its downsides: Access to shared content often remains active far longer than intended or the file owner is even aware of.

Microsoft 365 empowers users to make decisions about access without any real oversight by IT or security teams. In many organizations, heavy use of this feature has lead to a sprawling web of shared content no one is able to untangle. Do situations like these sound familiar to you?

  • You bring in a freelancer to help out on a project. The project wraps up, but nobody remembers to revoke their access to the project folder you have shared.

  • You upload confidential strategy documents to a Teams channel. New members join this channel later on, but nobody considers that these documents can still be found in the Files tab.

  • You set up a folder in SharePoint in order to share files with a business partner. Over time, users begin storing other documents in it, forgetting who else has access to the directory.

tenfold: Visibility & Security for Shared Content

The biggest driver of unmanaged cloud access is limited visibility. With tens of thousands of objects to manage, it becomes impossible to check which of them contain outdated or problematic access rights. Despite this, Microsoft 365 offers no centralized overview of cloud access. Even paid addons or dedicated governance tools only show the tip of the iceberg: users and group memberships.

With its in-depth reporting suite, tenfold brings much needed transparency to the Microsoft cloud. Our IGA solution gives you a full breakdown of access rights in the cloud, down to the level of individual objects. A centralized overview of shared files help organizations keep track of both internal and external sharing across Teams, OneDrive and SharePoint.

In addition to these existing features, tenfold’s newest update now allows organizations to conduct regular access reviews for shared content, ensuring that outdated cloud access is identified and removed. tenfold notifies data owners and asks them to confirm whether access to files they have shared is still needed.

Reviews can be scheduled at set intervals or tied to specific events, for example when a user transfers to another department or leaves the organization. This prevents outdated cloud privileges from piling up over time, ensuring access to shared files remains safe and appropriate.

NEW: Access Reviews for Shared Content in Microsoft 365

About the Author: Joe Kรถller

Joe Kรถller is tenfoldโ€™s Content Manager and responsible for the IAM Blog, where he dives deep into all things Identity & Access Governance. With the help of tenfoldโ€™s experienced team of IAM developers, Joe creates helpful and well-researched articles highlighting the security and productivity benefits of IAM. From hands-on guides to compliance breakdowns, his goal is to make complex topics approachable for all.