Skip to main content

💼 Microsoft Defender Configuration

  • Contextual name: 💼 Microsoft Defender Configuration
  • ID: /frameworks/cloudaware/resource-security/microsoft-defender-configuration
  • Located in: 💼 Resource Security

Description

Policies for identifying gaps in Microsoft Defender configuration.

Similar

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlags

Policies (26)

PolicyLogic CountFlags
📝 Azure Subscription Integration With Microsoft Defender For Cloud Apps is not enabled 🟢1🟢 x6
📝 Azure Subscription Integration With Microsoft Defender For Endpoint is not enabled 🟢1🟢 x6
📝 Azure Subscription Log Analytics Agent is not auto provisioned 🟢1🟢 x6
📝 Azure Subscription Microsoft Defender For (Managed Instance) Azure SQL Databases is not set to On 🟢1🟢 x6
📝 Azure Subscription Microsoft Defender For App Services is not set to On 🟢1🟢 x6
📝 Azure Subscription Microsoft Defender For Azure Cosmos DB is not set to On 🟢1🟢 x6
📝 Azure Subscription Microsoft Defender For Containers is not set to On 🟢1🟢 x6
📝 Azure Subscription Microsoft Defender For IoT Hub is not set to On 🟢🟢 x3
📝 Azure Subscription Microsoft Defender For Key Vault is not set to On 🟢1🟢 x6
📝 Azure Subscription Microsoft Defender For Open-Source Relational Databases is not set to On 🟢1🟢 x6
📝 Azure Subscription Microsoft Defender For Resource Manager is not set to On 🟢1🟢 x6
📝 Azure Subscription Microsoft Defender For Servers is not set to On 🟢1🟢 x6
📝 Azure Subscription Microsoft Defender For SQL Servers On Machines is not set to On 🟢1🟢 x6
📝 Azure Subscription Microsoft Defender For Storage is not set to On 🟢1🟢 x6
📝 Azure Subscription Security Alert Notifications additional email address is not configured 🟢1🟢 x6
📝 Azure Subscription Security Alert Notifications for alerts with High or Critical severity are not configured 🟢1🟢 x6
📝 Azure Subscription Security Alert Notifications for attack path with Critical severity are not configured 🟢🟢 x3
📝 Azure Subscription Security Alert Notifications to subscription owners are not configured 🟢1🟢 x6
📝 Azure Subscription Vulnerability Assessment is not auto provisioned 🟢🟢 x3
📝 Microsoft Cloud Security Benchmark policies are disabled 🟢🟢 x3
📝 Microsoft Defender Agentless Container Vulnerability Assessment Component is not enabled 🟢🟢 x3
📝 Microsoft Defender Agentless Discovery for Kubernetes Component is not enabled 🟢🟢 x3
📝 Microsoft Defender Agentless Scanning for Machines Component is not enabled 🟢🟢 x3
📝 Microsoft Defender External Attack Surface Monitoring (EASM) is not enabled 🟢🟢 x3
📝 Microsoft Defender File Integrity Monitoring Component is not enabled 🟢🟢 x3
📝 Microsoft Defender Recommendations for Apply System Updates are not completed 🟢🟢 x3