Getting Started with ConfigCobra
Onboard your Microsoft 365 tenant with ConfigCobra in five short steps — from a first message to a running CIS assessment.
Contact us to onboard →Onboarding is handled by our team.
ConfigCobra is no longer listed on Microsoft AppSource — subscriptions are provisioned directly through a short Contact-Us onboarding. To get started you'll need your Microsoft 365 Tenant ID.
Important License Requirements
CIS Benchmarks are based on Microsoft 365 E3 and E5 licenses. Although we can scan some controls without them, having some kind of Microsoft Defender license (Defender for Office 365, Defender for Endpoint, or Microsoft Defender XDR) is a minimum requirement for full functionality.
Contact ConfigCobra
Go to configcobra.com/contact (or email info@configcobra.com) and include:
- Your Microsoft 365 Tenant ID — the GUID of the tenant you want to assess
- The number of licensed Microsoft 365 users in that tenant (excluding guest users) — see how to check →
- The plan you're interested in (Small / Medium / Large / Enterprise, MSP Assessment License, or free trial)
How to find your Tenant ID: sign in to the Microsoft Entra admin center ↗, go to Identity → Overview, and copy the Tenant ID field. Full walkthrough: Microsoft Learn — How to find your tenant ID ↗.
We activate your tenant
Once we receive your request, our team validates the tenant and provisions your workspace. You'll get a confirmation email — usually within one business day — with your login link and next steps.

Log in to ConfigCobra
Head to app.configcobra.com ↗ and sign in with your Microsoft 365 account using Single Sign-On.
Accept admin consent
Accept all the permissions on the admin consent page. This is required for ConfigCobra to read your Microsoft 365 configuration through Microsoft Graph (read-only — no writes, no agents installed).

Configure missing role permissions
After login, go to the Assessment page. You will see some controls tagged with a Missing Permissions blue label. Click one — a modal opens where you can manage the required roles:
- Press "ASSIGN" to automatically assign the required roles and permissions
- Press "DO IT MANUALLY" if you prefer to configure the permissions through the Azure portal
- If you are a regular user: send the instructions to your global administrator to grant the necessary permissions

You're ready to do your first assessment!
Once you've completed all the steps above, you can navigate to the Assessment page and start running your first CIS compliance scan. ConfigCobra will automatically check your Microsoft 365 configurations against CIS Benchmark standards.