
In Progress
Posted
Paid on delivery
My Office 365 tenant was compromised and spam is both being sent from and funneled into several mailboxes. I still have full access to every account and I have already changed all user passwords, but the unwanted messages keep coming, so the breach clearly runs deeper than simple credentials. I need an experienced Microsoft 365 security specialist to: • Trace and eliminate the source of the spam (malicious rules, forwarding, connected apps, or transport agents). • Scrub every mailbox, quarantine suspicious items, and make sure no back-door forwarding or delegate permissions remain. • Review audit logs and sign-in reports to confirm the attacker’s entry points and last activity. • Reinforce the tenant with best-practice hardening: conditional access, two-factor authentication, Safe Links, Safe Attachments, and alert policies. • Provide a brief post-mortem report that explains what happened, what was cleaned, and how to avoid a recurrence. Acceptance will be based on the spam flow stopping for at least 48 hours, clean security scores in the Microsoft 365 Security Center, and the written remediation report.
Project ID: 40658220
5 proposals
Remote project
Active 1 min ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs

Hi, I can help secure and remediate your compromised Microsoft 365 tenant. I have experience with **Office 365 security, Exchange Online, audit/sign-in logs, mailbox rules, forwarding, delegated access, MFA, Conditional Access, and email security hardening**. I will trace the spam source, remove malicious rules/apps/permissions, review affected mailboxes and audit logs, strengthen tenant security, and verify that outbound spam has stopped. I can also provide a concise post-incident report covering the root cause, remediation steps, and recommendations to prevent recurrence. I’m available to start immediately. Best regards, SOLOK
$20 USD in 1 day
0.0
0.0
5 freelancers are bidding on average $34 USD for this job

Hi, your tenant has a deeper Microsoft 365 compromise than password reuse, and the main goal is to stop the spam at its source. I’ve handled cleanup work like this in Microsoft 365, including mailbox rule removal, forwarding audits, sign-in review, and tenant hardening. I focus on Exchange Online, Entra ID, audit logs, message trace, and security center settings to find the persistence layer quickly. My approach would be to identify every mail flow vector, remove malicious rules, connectors, delegates, and forwarding, then validate the attacker’s last activity and entry points. After that I’d harden the tenant with MFA, conditional access, Safe Links, Safe Attachments, alert policies, and any needed mailbox protections. I’d also verify the spam stops and document exactly what was cleaned. If you want, I can start by mapping the likely persistence points and remediation plan. Best regards, Gabriel
$100 USD in 1 day
2.5
2.5

Hello, Your Office 365 tenant is facing spam issues due to a compromise. I can help you clean up the email accounts and secure your tenant to prevent further incidents. I'll start by identifying the source of the spam and remove any unauthorized access. Then, I’ll implement security measures to protect your accounts moving forward. I have experience with Microsoft Exchange and DNS, which will be crucial in this cleanup process. I will need access to your admin panel to begin this work. I can provide an initial report on findings and actions taken within the first few days. Best regards, David
$10 USD in 1 day
0.0
0.0

Consider this, ✍️ The key here is to ensure your Office 365 environment is thoroughly secured and cleaned from any lingering threats. You mentioned the need to trace the source of the spam and eliminate it effectively. What usually matters most here is understanding how deeply the compromise has affected your system. A common issue is overlooking hidden rules or permissions that allow spam to persist even after passwords are changed. I would approach this by conducting a comprehensive audit of all mailboxes, reviewing configurations, and identifying any unauthorized access points. My experience in Microsoft 365 security, paired with a focus on long-term relationships, ensures that I can provide a thorough resolution. What specific timelines do you have in mind for this cleanup? Best, Kurt
$12 USD in 7 days
0.0
0.0

Hi, ? I can help identify, remove, and harden your compromised Microsoft 365 tenant so the spam flow is completely stopped and the environment is secure again. What I’ll handle ? Trace the spam source — inbox rules, forwarding, OAuth/connected apps, delegates, transport rules, and other persistence mechanisms ? Review and clean affected mailboxes and quarantine suspicious messages ? Audit sign-ins, audit logs, permissions, and suspicious activity to identify the entry point ?️ Strengthen the tenant with MFA, Conditional Access, Safe Links, Safe Attachments, alerting, and recommended security policies ? Remove unauthorized forwarding, delegates, rules, sessions, and application access ? Review Microsoft 365 Security Center recommendations and security posture ? Provide a concise post-incident report covering the cause, actions taken, findings, and prevention steps I’ll work carefully to preserve legitimate mail flow while eliminating the attacker’s persistence mechanisms. ✅ The goal is straightforward: stop the unwanted mail flow, verify the tenant remains clean for 48+ hours, and leave you with a hardened Microsoft 365 environment and clear documentation.
$30 USD in 7 days
0.0
0.0

Middletown, United States
Payment method verified
Member since Mar 11, 2021
$30-250 USD
$30-250 USD
$30-250 USD
$30-250 USD
$10-30 USD
$250-750 USD
₹750-1250 INR / hour
₹12500-37500 INR
$30-250 USD
$30-250 USD
₹100-150 INR / hour
$11-14 CAD
£20-250 GBP
₹600-1500 INR
$25-50 USD / hour
$250-750 USD
₹12500-37500 INR
£250-750 GBP
₹37500-75000 INR
$2500-2900 USD
₹750-1250 INR / hour
$1500-3000 USD
₹1500-12500 INR
₹1500-12500 INR
$5000-10000 USD