Updated: July 14, 2020 (January 13, 2014)

  Analyst Report

Microsoft Account Security Enhanced

My Atlas / Analyst Reports

914 wordsTime to read: 5 min
Michael Cherry by
Michael Cherry

Michael analyzed and wrote about Microsoft's operating systems, including the Windows client OS, as well as compliance and governance. Michael... more

The Microsoft account identity provider service used with many Microsoft online services has been updated so that users can monitor account activity, get a recovery code in case there is a problem with accessing their accounts, and control where notifications are sent. The changes make Microsoft accounts more secure because users can better monitor account activity, and now that recovery has been streamlined they will be more likely to use two-factor authentication. However, Microsoft accounts are owned and controlled by the user, even if they are created with an organization-owned e-mail address, so organizations must control the Microsoft accounts that are used with services that are critical to them.

Improvements Make Account More Secure

Microsoft account is a Microsoft-hosted identity service. Any user can create an account as long as the user has an e-mail address where the user can receive a link to finish activation of the account. Most information about the user associated with the account is self-asserted: Microsoft only verifies the e-mail address and payment information if the account is set up for purchase from a Microsoft Store. Microsoft does not check any other claims made by the account’s user, such as the user’s name or age.

Atlas Members have full access

Get access to this and thousands of other unbiased analyses, roadmaps, decision kits, infographics, reference guides, and more, all included with membership. Comprehensive access to the most in-depth and unbiased expertise for Microsoft enterprise decision-making is waiting.

Membership Options

Already have an account? Login Now