Clear Tenant

Microsoft 365 Tenant Management

Clear Tenant: M365 Security Posture Management

Clear Tenant gives you one continuously updated view of Microsoft 365 tenant health across identity, devices and security posture. Risk surfaces as an early signal you can act on, rather than arriving as an incident.

At the centre is Tenant Hygiene, a running health score that tracks compliance and stale device signals, risk and exposure indicators from your security and policy posture, and movement over time so you can verify whether remediation is actually working. Teams start their day with the highest-risk and stalest tenants, drill into the hygiene category that matters, assign the fix, then re-check the trend once changes land. Alongside it, Clear Tenant covers Secure Score analysis, identity posture, policy analysis, incidents and alerts, blast radius, mail flow and advanced hunting, with baselines, patching and reporting built in.

Inside Clear Tenant

One console for every Microsoft 365 tenant you manage

Posture, investigation and configuration in a single workspace, built around how engineers actually work across a multi-tenant estate.

Tenant Security Posture / Secure Score Full size
Clear Tenant Secure Score Command Center showing a 73.1 percent score, 30-day change and trend status
01Posture

Secure Score Command Center

See the current score against the maximum available, what moved it over the last 30 days, and which controls drove the change. Trend status flags whether a tenant is improving steadily or swinging, and the next milestone shows exactly how many points remain.

30-day changeTrend statusNext milestone
Tenant Security Posture / Score Activity Full size
Clear Tenant Recent Secure Score Activity listing daily control-level score movement
02Posture

Control-level score history

Every daily movement, with the specific controls behind it and the points each one gained or lost. When a score drops, you can see whether real-time protection was turned off or Defender sensor data collection stopped reporting, rather than guessing.

Daily movementPer-control pointsRegression detection
Tenant Security Posture / Target Plan Full size
Clear Tenant Target Plan with an AI-curated path to an 80 percent secure score
03Posture

Target Plan

Set a target secure score and generate a prioritised, sequenced path to reach it. The plan estimates engineering timeframe, points required and confidence, then separates quick wins from the changes carrying real risk, including compatibility and change-management considerations.

Prioritised sequencingEffort and confidenceQuick wins and key risks
Tenant Overview / Security / Incidents Full size
Clear Tenant Incidents queue with AI incident analysis and cross-domain context
04Investigate

Incidents and alerts, triaged

A working queue banded by priority, with open counts, oldest open and median time to close. Every alert is analysed automatically: what happened, the reasoning behind a false-positive assessment, the supporting evidence and recommended next actions, alongside cross-domain context from the tenant's own hygiene signals. That analysis is built in. Microsoft Security Copilot delivers comparable triage support, but it is licensed separately and billed by provisioned compute, which puts it well beyond most mid-market budgets before a single alert is reviewed.

AI analysis on every alertFalse-positive reasoningP1 to P4 bandingNo separate Copilot licence
Investigate / Advanced Hunting Full size
Clear Tenant Advanced Hunting with a KQL editor and a categorised hunt library
05Investigate

Advanced Hunting

Query Defender XDR data with KQL. Start from a ready-made hunt, build one step by step, or write your own. The library is organised by investigation type, covering alerts and triage, identity and sign-ins, email and phishing, and device and process activity.

KQL editorCurated hunt librarySaved and recent queries
Workspace / Threat Intel Full size
Clear Tenant Threat Intel showing indicators, auto-push rules and push history
06Investigate

One block list, every tenant

File hashes and URLs harvested from incident evidence are reviewed in one place, then deployed across the whole portfolio as Microsoft Defender custom indicators, manually or on a daily auto-push. Approved indicators carry a default expiry, and the status view shows drift, expiry and failures per tenant.

SHA256, SHA1, MD5, URLAuto-push rulesPer-tenant push status
Baselines / Deployment Studio Full size
Clear Tenant Baseline Deployment Studio importing and staging policies for rollout
07Manage

Baseline Deployment Studio

Import policies from a source tenant, stage them into baseline groups, configure assignment scope, then target tenants and deploy. Policies are grouped by purpose, tracked by type and platform, with import timestamps so you always know which version of a baseline is in play.

Import from source tenantsGrouped rolloutAssignment scoping
Dashboard / Tenant / Patching Full size
Clear Tenant Application Patching catalogue built on WinGet package data
08Manage

Application patching

Select applications from the WinGet catalogue and manage patching policy from one place. Search by app name, publisher or package ID, with the latest available version shown against each entry so you can see what is behind before you build the policy.

WinGet cataloguePolicy builderRollout status
Workspace / Licenses Full size
Clear Tenant Licenses by product showing utilisation and optimisation suggestions
09Manage

Licence optimisation

A sortable, filterable inventory of licences by product, with utilisation shown against seats assigned. Optimisation suggestions surface unassigned paid seats that should be reassigned or reduced, so spend is visible rather than discovered at renewal.

Utilisation by productUnassigned paid seatsOptimisation suggestions

Built by Microsoft-certified engineers, not generalist developers. Clear Tenant was designed by the people who run these tenants every day, which is why it follows the workflows engineers actually use rather than the ones a product roadmap assumes.

Contact us today

Demonstrate independently verified cyber security, meet supplier requirements, and build greater trust with customers. Speak to our experts today to start your Cyber Essentials Plus certification journey.