Securing Exchange Management Shell (EMS)

1. List All Users with Remote PowerShell Enabled

2. Disable all Remote PowerShell Enable Users

3. Enable Remote PowerShell For specific Users

4. Use Secure Protocols and Authentication

Confirm HTTPS Listener Is Enabled on Exchange Server

5. Audit and Monitor EMS Activity

2. Review and Filter Audit Logs

6. Limit Script Execution Policy

7. Keep Exchange and OS Updated

Final Thoughts