---
title: "Tenant Audit Accelerator — Azure & Microsoft 365 | Lucid Labs"
description: "A repeatable, read-only Azure and Microsoft 365 tenant audit via Azure Lighthouse — security, cost, and governance findings with a remediation plan you keep."
url: "https://lucidlabs.com.au/products/tenant-audit"
---

Accelerator

Used on every tenant engagement

# Tenant Audit Accelerator

A repeatable Azure and Microsoft 365 tenant audit

The audit we run for customers, packaged. Read-only by design via Azure Lighthouse, findings across security, cost, and governance, and a report you keep whether or not you take the next step with us.

[Book a tenant audit](https://lucidlabs.com.au/#contact)[All products](https://lucidlabs.com.au/products)

## You cannot fix what nobody has inventoried

Most tenants have grown by accretion: a subscription spun up for a project, a policy exception that became permanent, a licence pool nobody has counted since the last renewal. The gaps are rarely dramatic — they are just unowned.

A one-off audit tells you where things stood the day someone looked. What you want is the same audit, run the same way, every time — so the second run is a comparison rather than a fresh start.

This is the tooling we run on our own customers, and it is deliberately read-only. Nothing in the audit path can change your estate.

## How it works

1.  ### Delegate read-only access
    
    You deploy an Azure Lighthouse template into your subscription. It grants Reader, Security Reader, Monitoring Reader, and Cost Management Reader — nothing that can write.
    
2.  ### Run the audit
    
    Automated checks sweep the estate: identity and access, security posture, policy compliance, resource tagging, and cost. Results are centralised rather than scattered across portals.
    
3.  ### Read the findings
    
    Findings come back prioritised, with the evidence attached and an estimate of what remediation actually involves — including the ones you can safely leave alone.
    
4.  ### Re-run and compare
    
    Because the audit is repeatable, the next run measures movement. Progress is a diff, not a new opinion.
    

## What you get

### Security posture review

Identity, access, and Defender findings across the tenant, ordered by what is worth acting on first. You get a ranked list you can work through.

### Cost and licence analysis

Where the spend actually goes and what is idle or over-provisioned. Includes the licences being paid for but never assigned.

### Governance and tagging

Policy compliance and resource tagging against a standard schema. Surfaces the ownership gaps that make everything else harder to fix.

### A report you keep

The findings and remediation plan are yours regardless of what you do next. If you are in good shape, that is what the report says.

## Built on

-   Azure Lighthouse
    
-   Microsoft Defender
    
-   Azure Policy
    
-   Azure Cost Management
    
-   Microsoft Graph
    
-   PowerShell
    

## Start with the audit, decide afterwards

The audit is fixed-scope and read-only. You get the findings either way — engaging us on the remediation is a separate decision.

[Book a tenant audit](https://lucidlabs.com.au/#contact)
