Remediation
From Azure Portal
- Go to
Storage Accounts. - For each Storage Account, under
Data management, go toData protection. - Check the box next to
Enable soft delete for blobs. - Set the retention period to a sufficient length for your organization.
- Click
Save.
From Azure CLI
Update blob retention with the following command:
az storage account blob-service-properties update \
--enable-delete-retention true \
--delete-retention-days {{retention-days}} \
--account-name {{storage-account-name}} \
--resource-group {{resource-group-name}}