Cloud security

Cloud Security

We help control access, sharing and risky account activity across Microsoft 365 and Google Workspace.

Managed by JCPIT For Australian small business
Architecture practice reviewing secure cloud collaboration with an IT adviser

JCPIT’s cloud security is for businesses storing files in Microsoft 365, OneDrive, SharePoint or Google Workspace and needing tighter control over sharing and access. We review the environment, configure the controls available in your licences and help investigate the security alerts those services provide.

Source: Microsoft security guidance on cloud sharing and access control.

Your Data Lives in the Cloud. So Do the Threats.

Most small businesses now store critical data in Microsoft 365, OneDrive, SharePoint, or Google Workspace. That makes sharing easy, but it also means access needs regular review.

JCPIT helps reduce cloud risk by tightening account access, sharing rules, application permissions and the security settings available in your environment.

What we help control

  • Account access — MFA, administrator roles, sign-in policy and other controls are reviewed against the way your team works.
  • External sharing — OneDrive, SharePoint and Google Drive sharing settings are configured to reduce accidental exposure.
  • Third-party applications — Connected applications and delegated permissions are reviewed so old or unnecessary access can be removed.
  • Risky activity — Where the enabled platform provides a useful alert, JCPIT reviews the context and coordinates the next action.
  • Configuration changes — Important security settings are documented and periodically checked so weakened controls are easier to identify.

How It Works

  1. Scope the environment — We confirm your platform, licences, users, sensitive data and current sharing requirements.
  2. Configure available controls — We apply practical access and sharing settings supported by your Microsoft 365 or Google Workspace subscription.
  3. Review relevant alerts — JCPIT investigates the security signals available from the services connected to your environment.
  4. Coordinate the response — We explain what happened and work with you on access changes, account hardening or other remediation.

What You Get

  • Microsoft 365 or Google Workspace security review
  • External sharing and access-policy configuration
  • Third-party application permission review
  • Security-alert review where supported
  • Configuration baseline and periodic checks
  • Plain-English remediation guidance
  • Reporting matched to the controls in scope

Frequently asked questions

Examples include unusual account access, risky app connections, overly broad sharing and important permission changes in Microsoft 365 or Google Workspace. The available visibility depends on the platform and licences in use.

We can reduce the risk by configuring supported sharing controls and reviewing how staff collaborate. No policy can prevent every mistake, so staff processes and prompt reporting still matter.

Usually no. We use the administration and API connections supported by the platform and enabled services. JCPIT confirms the required access during scoping.

We flag it, review the context, and take the next action with you so you know what changed and why.

Other Services

Ready to get protected?
Find out where your business is vulnerable with our free, no-obligation security check.