🛡️ Azure Subscription Microsoft Defender For IoT Hub is not set to On🟢⚪
- Contextual name: 🛡️ Microsoft Defender For IoT Hub is not set to On🟢⚪
- ID:
/ce/ca/azure/subscription/microsoft-defender-for-iot-hub - Tags:
- Policy Type:
COMPLIANCE_POLICY - Policy Categories:
SECURITY
Similar Policies
- Cloud Conformity: Enable Defender for Endpoint Integration with Microsoft Defender for Cloud
- Internal:
dec-x-cff561fd
Similar Internal Rules
| Rule | Policies | Flags |
|---|---|---|
| ✉️ dec-x-cff561fd | 3 |
Description
Description
Microsoft Defender for IoT acts as a central security hub for IoT devices within your organization.
Rationale
IoT devices are very rarely patched and can be potential attack vectors for enterprise networks. Updating their network configuration to use a central security hub allows for detection of these breaches.
Impact
Enabling Microsoft Defender for IoT will incur additional charges dependent on the level of usage.
Audit
From Azure Portal
- Go to
IoT Hub.- Select an
IoT Hubto validate.- Select
OverviewinDefender for IoT.- The Threat prevention and Threat detection screen will appear, if
Defender for IoTis Enabled.Default Value
By default, Microsoft Defender for IoT is not enabled.
References
- https://azure.microsoft.com/en-us/services/iot-defender/#overview
- https://docs.microsoft.com/en-us/azure/defender-for-iot/
- https://azure.microsoft.com/en-us/pricing/details/iot-defender/
- https://docs.microsoft.com/en-us/security/benchmark/azure/baselines/defender-for-iot-security-baseline
... see more
Remediation
Remediation
From Azure Portal
- Go to
IoT Hub.- Select an
IoT Hubto validate.- Select
OverviewinDefender for IoT.- Click on
Secure your IoT solution, and complete the onboarding.