Skip to main content

πŸ“ Azure Subscription

  • Contextual name: πŸ“ Subscription
  • ID: /ce/ca/azure/subscription
  • Located in: πŸ“ Azure

Policies (36)​

PolicyLogic CountFlags
πŸ“ Activity Log Alert for Create or Update Network Security Group does not exist 🟒1🟒 x6
πŸ“ Activity Log Alert for Create or Update Public IP Address Rule does not exist 🟒1🟒 x6
πŸ“ Activity Log Alert for Create or Update Security Solution does not exist 🟒1🟒 x6
πŸ“ Activity Log Alert for Create or Update SQL Server Firewall Rule does not exist 🟒1🟒 x6
πŸ“ Activity Log Alert for Create Policy Assignment does not exist 🟒1🟒 x6
πŸ“ Activity Log Alert for Delete Network Security Group does not exist 🟒1🟒 x6
πŸ“ Activity Log Alert for Delete Policy Assignment does not exist 🟒1🟒 x6
πŸ“ Activity Log Alert for Delete Public IP Address Rule does not exist 🟒1🟒 x6
πŸ“ Activity Log Alert for Delete Security Solution does not exist 🟒1🟒 x6
πŸ“ Activity Log Alert for Delete SQL Server Firewall Rule does not exist 🟒1🟒 x6
πŸ“ Application Insights are not configured 🟒1🟠 x1, 🟒 x5
πŸ“ Bastion Host does not exist 🟒1🟠 x1, 🟒 x5
πŸ“ Custom Subscription Administrator Roles exist 🟒1🟒 x6
πŸ“ Integration With Microsoft Defender For Cloud Apps is not enabled 🟒1🟒 x6
πŸ“ Integration With Microsoft Defender For Endpoint is not enabled 🟒1🟒 x6
πŸ“ Log Analytics Agent is not auto provisioned 🟒1🟒 x6
πŸ“ Microsoft Defender For (Managed Instance) Azure SQL Databases is not set to On 🟒1🟒 x6
πŸ“ Microsoft Defender For App Services is not set to On 🟒1🟒 x6
πŸ“ Microsoft Defender For Azure Cosmos DB is not set to On 🟒1🟒 x6
πŸ“ Microsoft Defender For Containers is not set to On 🟒1🟒 x6
πŸ“ Microsoft Defender For DNS is not set to On 🟒1🟒 x6
πŸ“ Microsoft Defender For IoT Hub is not set to On 🟒🟒 x3
πŸ“ Microsoft Defender For Key Vault is not set to On 🟒1🟒 x6
πŸ“ Microsoft Defender For Open-Source Relational Databases is not set to On 🟒1🟒 x6
πŸ“ Microsoft Defender For Resource Manager is not set to On 🟒1🟒 x6
πŸ“ Microsoft Defender For Servers is not set to On 🟒1🟒 x6
πŸ“ Microsoft Defender For SQL Servers On Machines is not set to On 🟒1🟒 x6
πŸ“ Microsoft Defender For Storage is not set to On 🟒1🟒 x6
πŸ“ Network Watcher is not enabled in every available region 🟒1πŸ”΄ x1, 🟒 x5
πŸ“ Resource Lock Administrator Custom Role does not exist 🟒🟒 x3
πŸ“ Resources Basic SKU is used for production workloads 🟒🟒 x3
πŸ“ Security Alert Notifications additional email address is not configured 🟒1🟒 x6
πŸ“ Security Alert Notifications for alerts with High severity is not configured 🟒1🟒 x6
πŸ“ Security Alert Notifications to subscription owners are not configured 🟒1🟒 x6
πŸ“ Subscription Leaving Microsoft Entra ID Directory and Subscription Entering Microsoft Entra ID Directory is not set to Permit No One 🟒🟒 x3
πŸ“ Vulnerability Assessment is not auto provisioned 🟒🟒 x3