SearchLight Counselling and Therapy is a community‑focused mental health provider offering confidential therapeutic services to individuals, families, and local organisations. Their work is centred on improving wellbeing, delivering professional counselling, and supporting clients with a wide range of emotional and psychological needs. As a trusted local service, they depend on secure digital systems to protect sensitive information and ensure consistent access for staff and service users.
SearchLight Counselling and Therapy approached us seeking a comprehensive improvement of their Microsoft Secure Score and the implementation of modern Conditional Access controls. As an organisation handling sensitive personal data, they required strengthened protection against phishing, malware, and unauthorised access. Their existing security posture did not fully reflect best practice and needed a structured review to ensure alignment with evolving cyber threats. The challenge involved delivering a unified security enhancement plan that would increase visibility, reduce risks, support compliance expectations, and improve resilience without disrupting day‑to‑day operations. Our goal was to introduce layered security controls and modern identity governance to provide long‑term stability and safer digital experiences for both staff and service users.
We carried out a full review of the organisation’s Microsoft 365 environment and implemented a modern security framework aligned with industry standards. Conditional Access policies were configured and enforced to ensure that only trusted users and compliant devices could access organisational data. These policies introduced robust access control based on risk, location, and device posture.
We enabled the Microsoft Defender Standard Policy, bringing enhanced baseline protection across accounts, applications, and endpoints. The Anti‑Phish, Anti‑Malware, and Anti‑Spam policies were updated to strengthen email security and reduce exposure to social engineering and harmful attachments. A refined Quarantine Policy was created, and global settings were updated to support clear visibility and simplified management of flagged messages.
User consent settings were reviewed to minimise unnecessary third‑party application access. Data Sensitivity Labels were introduced to encourage responsible handling of information and support future compliance needs. We added organisation‑wide company branding to reinforce legitimacy and reduce the risk of fraudulent sign‑in pages.
Additional safety enhancements included disabling user‑installed Outlook add‑ins, restricting external calendar sharing, and applying BYOD App Protection to secure work data across personal devices. This ensured that organisational information remained protected even outside the traditional office environment.
Following implementation, SearchLight Counselling and Therapy experienced a substantial improvement in their security posture and day‑to‑day operational confidence. Their Secure Score increased significantly, providing measurable evidence of strengthened cyber resilience. Email‑based threats were reduced thanks to enhanced filtering and improved control of suspicious activity.
Staff benefited from safer access processes without added complexity, while Conditional Access ensured that sensitive data remained protected behind strong identity requirements. The introduction of Sensitivity Labels supported better data governance, helping staff handle information securely with minimal training overhead.
The organisation now operates within a structured security framework that supports ongoing growth and future digital plans. With suspicious access attempts blocked automatically and improved visibility across the Microsoft 365 environment, the leadership team can rely on a more stable, trusted, and compliant system to support their essential counselling services.
- Improved Microsoft Secure Score
- Stronger access protection through Conditional Access
- Reduced phishing, spam, and malware exposure
- Enhanced data governance with Sensitivity Labels
- Safer email management and streamlined quarantine processes
- Controlled use of apps and add‑ins
- More secure BYOD environment
- Improved visibility and monitoring across Microsoft 365