The backup Microsoft never promised you
- ID
- 13875
- Status
- summarized
- Published
- 13 Aug 2026, 11:00 PM
- Fetched
- 13 Aug 2026, 11:37 PM
- Provider
- The Register
- Category
- technology
- Original URL
- https://www.theregister.com/security/2026/08/13/sponsored-the-backup-microsoft-never-promised-you/5284957
- Source URL
- https://www.theregister.com/headlines.atom
Summary
- Score
- 3.5
- Created
- 13 Aug 2026, 11:40 PM
- Tags
- Audience
- developerssaas_founders
What happened
This sponsored feature argues that Microsoft's shared responsibility model leaves M365, Entra ID, and Azure customers unprotected against ransomware-driven data deletion, since Microsoft ensures service availability but does not restore data to a known-good point. Brent Torre, described as GM of cyber resilience (vendor not named in excerpt), states Microsoft's native tools handle accidental deletion and governance but are not a backup solution.
Why it matters
If you run SaaS workloads on M365 or Azure, verify whether your team or MSP has a third-party backup that can restore to a point-in-time after ransomware or malicious deletion—Microsoft's native retention is not that. This is a sponsored vendor piece, so treat the framing as marketing and confirm the specific gaps against Microsoft's own documentation rather than taking claims at face value.
Discussion angle
Where the shared-responsibility line actually sits for M365 and Azure data, and what a minimal third-party backup setup looks like for a small Malaysian SaaS team that assumes Microsoft handles it.