If your tenant was created on or after October 22, 2019, security defaults might be enabled in your tenant. To protect all of our users, security defaults are being rolled out to all new tenants at creation.
To help protect organizations, we’re always working to improve the security of Microsoft account services. As part of this protection, customers are periodically notified for the automatic enablement of the security defaults if they:
- Haven’t enabled Conditional Access policies
- Don’t have premium licenses
- Aren’t actively using legacy authentication clients
After this setting is enabled, all users in the organization will need to register for multi factor authentication. To avoid confusion, refer to the email you received and alternatively you can disable security defaults after it’s enabled.
To configure security defaults in your directory, you must be assigned at least the Security Administrator role. By default the first account in any directory is assigned a higher privileged role known as Global Administrator.
To enable or disable security defaults:
- Sign in to the Microsoft Entra admin center as at least a Security Administrator.
- Browse to Overview > Properties. 
- Select Manage security defaults in bottom of page.
- Set Security defaults to Enabled or Disabled.
- Select Save.
 
								 
															 
															 
															