M365Clarity · Microsoft 365 Admin
Microsoft 365 is marketed as one product. One subscription. One suite. And largely, that is true — it is a single commercial offering with a single bill.
But behind that single product sits at least 15 separate admin portals, each with its own URL, its own interface, its own configuration options, and its own risk surface. If you are the IT admin responsible for a Microsoft 365 tenant, you are expected to know your way around all of them.
Most people outside of IT do not know this. Many people inside IT are only fluent in three or four.
This post lists every major Microsoft 365 admin portal, what it does, and why it exists as a separate dashboard rather than being part of the main admin centre. At the end, we explain why the sheer number of portals creates a real visibility problem — and how to address it.
How we counted: We have listed the portals that a typical IT admin managing a Microsoft 365 tenant would need to use — not every Azure or developer portal that exists in Microsoft's wider ecosystem. If your organisation uses Dynamics 365, Azure, or Power Platform heavily, the total number is higher still.
The main hub. User management, licence assignment, billing, service health, and the gateway to every other admin centre listed below. Most IT admins spend the majority of their time here, but it does not give deep visibility into security or compliance settings — that requires the specialist portals.
Identity and access management — formerly the Azure Active Directory portal. Conditional Access policies, MFA settings, Privileged Identity Management, access reviews, lifecycle workflows, and app registrations all live here. This is arguably the most security-critical portal in the list.
Extended detection and response (XDR) across endpoint, email, identity, and cloud apps. Active incidents, Secure Score, threat intelligence, Attack Simulation Training, and Defender for Office 365 policies. Also where you configure anti-phishing, Safe Links, and Safe Attachments.
Data loss prevention, sensitivity labels, retention policies, eDiscovery, audit log search, insider risk management, and communication compliance. If your organisation is subject to GDPR, ISO 27001, or Cyber Essentials, this portal is where much of the compliance configuration lives.
Device management for corporate and BYOD devices across Windows, iOS, Android, and macOS. Compliance policies, configuration profiles, app deployment, BitLocker enforcement, Windows Autopilot, and Autopatch all sit here. Separate from everything else and requires its own familiarity.
Email configuration for Exchange Online. Mailbox management, distribution groups, mail flow rules, quarantine policies, anti-spam settings, DKIM configuration, and external forwarding controls. Despite Microsoft consolidating some email security into Defender, the Exchange Admin Centre remains essential for mail flow and mailbox settings.
SharePoint site management, external sharing policies, OneDrive storage settings, and sync controls. The external sharing setting here — whether files can be shared with Anyone, specific guests, or only internal users — is one of the most commonly misconfigured settings in Microsoft 365.
Meeting policies, messaging policies, guest access settings, external access (federation), app permissions, and Teams Premium features. Controls who can record meetings, who can invite external users, and what apps can be installed in Teams. Entirely separate from the main M365 admin centre.
Manages the Office desktop application suite — Word, Excel, PowerPoint, Outlook, and others. Controls update channels, deployment configurations, OneDrive sync health, and cloud policy settings for Office apps. Easy to overlook but important for organisations with strict update or configuration requirements.
Governance for Power Apps, Power Automate, and Power BI. Environment management, data loss prevention policies for Power Platform, capacity monitoring, and connector governance. Often managed separately by a different team, but the security and data policies here affect the whole organisation.
Employee experience settings across Viva Insights, Viva Engage (formerly Yammer), Viva Learning, and Viva Goals. As Microsoft's employee experience layer has expanded, so has the configuration footprint — community settings, digest emails, privacy controls, and app integrations all live here.
Adoption and usage analytics for Microsoft 365 Copilot — how many licensed users are active, which apps they are using Copilot in, and usage trends over time. Important for organisations managing a Copilot rollout and trying to justify licence spend. Redesigned in 2026 to include AI agent usage data.
Microsoft's SASE (Secure Access Service Edge) offering — traffic forwarding profiles, Private Access for replacing VPN, Internet Access web filtering, and private network connector health. Available on E5 or as an add-on. A relatively recent addition and not yet on most admins' radar.
While not exclusively a Microsoft 365 portal, most Microsoft 365 deployments touch Azure — for Azure AD B2C, conditional access named locations, Log Analytics, Azure Monitor, or hybrid identity via Entra Connect. Many IT admins find themselves here regularly even without a dedicated Azure footprint.
Service health status for every Microsoft 365 workload, and the Message Centre where Microsoft announces changes, retirements, and new features. Checking this weekly is standard practice for any IT admin — missing a Message Centre notice has caused organisations to be caught off guard by major changes.
The honest answer is that Microsoft 365 is not really one product. It is a portfolio of services — email, identity, endpoint management, compliance, security, collaboration, productivity apps — that have been acquired, built, or evolved separately over 20 years and packaged under a single commercial umbrella. Each service brings its own admin surface.
Microsoft has been consolidating where it can. The old Azure AD portal now redirects to Entra ID. The legacy Security and Compliance Centre split into the Defender portal and the Purview portal. The Exchange Control Panel redirected to the modern Exchange Admin Centre. But consolidation is slow, and some portals will always need to remain separate because the underlying services are genuinely different in scope and audience.
The consolidation is not finished. Microsoft continues to move settings between portals as part of ongoing modernisation. A setting you configured in one place two years ago may now live somewhere different — or have been replaced by a newer equivalent.
Each of these 15 portals has its own settings. Each setting can be configured correctly or incorrectly. Some settings interact with each other in ways that are not obvious — for example, a SharePoint external sharing policy and a Conditional Access policy both affect whether a guest user can access a shared file, and they live in completely different portals.
No single portal shows you whether your overall Microsoft 365 configuration is in a good state. The main admin centre shows you service health. The Defender portal shows you Secure Score. The Purview portal shows you compliance manager. But none of them gives you a single, plain-English view across everything — identity, email security, devices, compliance, licences, adoption, and governance — in one place.
That is the gap that M365Clarity exists to fill. Rather than asking you to navigate 15 portals and synthesise what you find, M365Clarity connects to your tenant via Microsoft Graph, runs 131 configuration checks across all of these areas, and surfaces what is configured, what is not, and what the impact is — in a single dashboard, in plain English.
The scan takes under 30 seconds. You do not need to log into 15 portals to get a clear picture of your tenant's security and configuration posture. M365Clarity does it for you.
You do not need to be an expert in every portal. But you do need to know which portals are relevant to your organisation's plan and risk profile, and you need a systematic way to check that the key settings across all of them are configured correctly.
At a minimum, make sure someone on your team has reviewed the settings in Entra ID (Conditional Access and MFA), the Exchange Admin Centre (external forwarding and anti-spam), the SharePoint Admin Centre (external sharing), the Defender portal (Secure Score and active incidents), and Intune (device compliance). Those five portals cover the settings that appear most frequently in security incidents involving Microsoft 365 tenants.
If you want a faster way to get across all of it, the free scan on M365Clarity checks 131 configurations across all of these areas in under 30 seconds and tells you exactly where you stand.
M365Clarity scans 131 configuration checks across your Microsoft 365 tenant and shows you what is configured, what is not, and what matters most — in plain English, in under 30 seconds.
Start free scan → View live demoRelated articles