Skip to main content

💼 2.1.8 Ensure That Microsoft Defender for Containers Is Set To 'On' - Level 2 (Automated)

  • ID: /frameworks/cis-azure-v2.1.0/02/01/08

Description

Turning on Microsoft Defender for Containers enables threat detection for Container Registries including Kubernetes, providing threat intelligence, anomaly detection, and behavior analytics in the Microsoft Defender for Cloud. The following services will be enabled for container instances:

  • Defender agent in Azure
  • Azure Policy for Kubernetes
  • Agentless discovery for Kubernetes
  • Agentless container vulnerability assessment

Similar

  • Sections
    • /frameworks/cis-azure-v3.0.0/03/01/04/01
  • Internal
    • ID: dec-c-17f52020

Similar Sections (Take Policies From)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS Azure v3.0.0 → 💼 3.1.4.1 Ensure That Microsoft Defender for Containers Is Set To 'On' (Automated)1no data

Similar Sections (Give Policies To)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS Azure v3.0.0 → 💼 3.1.4.1 Ensure That Microsoft Defender for Containers Is Set To 'On' (Automated)1no data

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance

Policies (1)

PolicyLogic CountFlagsCompliance
🛡️ Azure Subscription Microsoft Defender For Containers is not set to On🟢1🟢 x6no data