5.1.2.6 (L2) Ensure 'LinkedIn account connections' is disabled

Information

LinkedIn account connections allow users to connect their Microsoft work or school account with LinkedIn. After a user connects their accounts, information and highlights from LinkedIn are available in some Microsoft apps and services.

Disabling LinkedIn integration prevents potential phishing attacks and risk scenarios where an external party could accidentally disclose sensitive information.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

To remediate using the UI:

- Navigate to Microsoft Entra admin center

https://entra.microsoft.com/

.
- Click to expand Identity > Users select User settings
- Under LinkedIn account connections select No
- Click Save

Impact:

Users will not be able to sync contacts or use LinkedIn integration.

See Also

https://workbench.cisecurity.org/benchmarks/17682

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, 800-53|CM-7, CSCv7|13.3

Plugin: microsoft_azure

Control ID: cf7b55005bee6dba5fc8131906ada18651fed59bf29f751cbd88df492d4aeafe