Enable Policy for Connector
You can run policies and benchmarks defined for your SaaS application. The controls are validated, and the pass or fail status is displayed. Currently,
- For Google Workspace: Best practices are supported
- For Zoom: CIS Benchmark and Zoom Best Practices are supported
- For Salesforce: Best Practices is supported
- For MS O36, the following policies are supported:
- CIS Benchmark
- Microsoft Office 365 Best Practices
- SCuBAGear
- SCuBA Security Baseline for Microsoft Entra ID
- SCuBA Security Baseline for Microsoft Defender
- SCuBA Security Baseline for Microsoft Exchange Online
- SCuBA Security Baseline for Microsoft SharePoint Online and OneDrive
- SCuBA Security Baseline for Microsoft Teams
Navigate to the Policy tab to view all the policies provided by Qualys. From here, you can also enable or disable the policy for a connector.

Click the policy to open it in View Mode, then navigate to the Connectors tab. Select a connector, then enable or disable the policy for it from the Actions menu.

The Controls tab lists all controls with details such as SaaS, criticality, and more. Click on any control to view details specific to that control.

Once a policy for a connector is enabled, you can view your compliance posture in the Monitor tab.
For the following controls to be evaluated in SaaSDR accurately, make sure the Apps that don't use modern authentication settings are enabled in Microsoft 365 Admin Center > SharePoint > Policies > Access Control:
70123, 70124, 70125, 70105, 70100, 70095
You must have a Microsoft 365 E5 license to evaluate the following four controls:
70098, 70099, 70112, 70113
Related Topic