Microsoft is right and wrong at the same time.
True part: They are in danger of cyberattacks.
Questionable part: The Entra-Azure security direction. Maybe, if the quality gets up again instead of sideways, down and free falling. (Let alone the quality of Windows OS)
The real better direction would be to stay OnPrem, with as least cloud-internet dependency as possible. Working and testing backups. Separation of Networks, to some extend physical level not just VLAN. Etc, you know the drill.