1,212 questions with Microsoft Defender for Cloud-related tags

Sort by: Updated
2 answers

Compliance assessment and setting policies

Setting Security Center to Standard Plan allows for view and alteration of ASC policies. For assessment the framework can be chosen (e.g. ISO) However: looking at the assessment e.g. ISO I notice Windows level CCE policies Where do…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
asked 2020-07-15T15:00:58.087+00:00
Paul Schoorl 1 Reputation point
answered 2020-08-03T19:53:39.183+00:00
chakri 1 Reputation point
2 answers

Microsoft Defender ATP for Linux

My organization is currently testing Defender ATP for Linux in our Azure Dev Lab and I have a question about virus defintion(.dat) updates for the agents. The documentation that I've been able to find does not discuss the update files and I was wondering…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
asked 2020-07-31T18:04:23.163+00:00
Borgna, Andrew 1 Reputation point
answered 2020-08-03T18:52:18.007+00:00
Borgna, Andrew 1 Reputation point
1 answer One of the answers was accepted by the question author.

Enable AUdit Logging in the Security and Compliance Center

I am trying to figure out how to enable audit logging in the security and compliance center. I have only seen resources online talking about turning on the audit log search capabilities but not how to turn the audit logs in general for a company just…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,807 questions
asked 2020-08-03T15:14:04.89+00:00
Eisenhaur, Liam 21 Reputation points
accepted 2020-08-03T16:01:09.84+00:00
Eisenhaur, Liam 21 Reputation points
2 answers

Turning off Azure Security Centre to cut monthly operations cost

How much does it cost for the Azure Security Centre access per month? My security team has already deployed IBM Q-Radar SIEM and wanted to cut the cost of operating Azure cloud, hence I wonder: How much does it cost monthly to run Azure Security…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
Microsoft Sentinel
Microsoft Sentinel
A scalable, cloud-native solution for security information event management and security orchestration automated response. Previously known as Azure Sentinel.
1,000 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,807 questions
asked 2020-07-22T07:41:07.79+00:00
EnterpriseArchitect 4,866 Reputation points
commented 2020-08-01T10:27:48.307+00:00
Ken Golitin 21 Reputation points
1 answer

Azure security centre

Hi, I need to enable the following policies in azure security centre. MFA vulnerability assessment Web application should be accessable over https These are all cost free or need to buy any licence? Kindly advise Thank you

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
asked 2020-07-25T01:57:59.357+00:00
Soundarya A 21 Reputation points
commented 2020-07-30T20:53:07.207+00:00
JamesTran-MSFT 36,476 Reputation points Microsoft Employee
2 answers

URL for and API that queries the audit logs from the security and compliance center

I am developing a .Net Core console application and I'm trying to access the audit logs from the Audit Log section of the Security and Compliance Center. I have looked at multiple resources online but nothing has worked properly. I am also unsure of…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,807 questions
asked 2020-07-27T13:09:04.527+00:00
Eisenhaur, Liam 21 Reputation points
commented 2020-07-29T16:00:11.31+00:00
Eisenhaur, Liam 21 Reputation points
1 answer

Where is the button in Azure that you press to achieve 'out of the box' ISO 27001 compliance?

I've seen this button and can't find it again and I can't work out how to ask Microsoft directly. Can anyone please help?

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
asked 2020-07-23T05:40:50.337+00:00
Albatross Governance 1 Reputation point
commented 2020-07-28T23:58:06.74+00:00
bharathn-msft 5,086 Reputation points Microsoft Employee
2 answers One of the answers was accepted by the question author.

Disk Encryption

How long a VM will take to complete Disk encryption in Azure to enable disk encryption policy

Azure Disk Encryption
Azure Disk Encryption
An Azure service for virtual machines (VMs) that helps address organizational security and compliance requirements by encrypting the VM boot and data disks with keys and policies that are controlled in Azure Key Vault.
162 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
asked 2020-07-23T03:17:12.79+00:00
Soundarya A 21 Reputation points
accepted 2020-07-23T18:58:50.573+00:00
Soundarya A 21 Reputation points
2 answers

Accessing Security and Compliance with Azure Active Directory permissions

I am building a console app that I have registered in Azure Active Directory. This app needs to be able to read Audit Logs and other data from Microsoft Security and Compliance. I am currently trying permissions in Microsoft Graph, but have been…

Azure API Management
Azure API Management
An Azure service that provides a hybrid, multi-cloud management platform for APIs.
1,801 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,807 questions
asked 2020-07-22T14:31:10.253+00:00
Eisenhaur, Liam 21 Reputation points
commented 2020-07-22T18:43:31.927+00:00
Eisenhaur, Liam 21 Reputation points
2 answers One of the answers was accepted by the question author.

How to disable the built-in vulnerability assessment solution on virtual machines (powered by Qualys)

Hi, How to disable the built-in vulnerability assessment solution on virtual machines (powered by Qualys) from Azure security center recommendation? Already tried to disable using Azure Policy "Vulnerability Assessment should be enabled on…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
asked 2020-07-22T10:46:17.25+00:00
Sakaldeep Yadav 161 Reputation points MVP
accepted 2020-07-22T13:56:26.27+00:00
Sakaldeep Yadav 161 Reputation points MVP
3 answers One of the answers was accepted by the question author.

azure Vm security from Unauthorized access

Hey Guys, I have created azure vm. I want to secure azure vm from DDOS and Brute force attack. Guys please suggest, How do I protect vm from attacks other than JIT.

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,256 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
asked 2020-07-15T06:16:33.2+00:00
Narendra Gupta 21 Reputation points
accepted 2020-07-20T05:04:59.277+00:00
Narendra Gupta 21 Reputation points
1 answer One of the answers was accepted by the question author.

Endpoint protection on 2019 Core Confusion

I'm using 2019 Core for my azure servers and I'm confused on a few things regarding endpoint protection. The first is the IaasAntimalware vm extension. Is IaasAntimalware Windows Defender or something else? If it's windows defender, isn't that…

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,256 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
asked 2020-07-10T15:09:03.537+00:00
Alex Creech 21 Reputation points
accepted 2020-07-16T14:48:59.95+00:00
Alex Creech 21 Reputation points
2 answers

Error in Security Center CSV?

I have tried exporting my Security Center recommendations to a CSV, but the downloaded CSV-file contains errors in the encoding. Specifically the column titled 'remediation steps' causes problems, as the step by step descriptions get sorted into separate…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
asked 2020-07-09T08:08:03.11+00:00
Naldal, Sara Lee 1 Reputation point
commented 2020-07-14T18:30:57.02+00:00
Saurabh Sharma 23,761 Reputation points Microsoft Employee
1 answer

What is the Default session time-out for MDATP Console, or from where we can edit it?

Hi Team, We are Creating a Quality Document for MDATP wihtin our organization, we need a few details we need to mention in same. What will be the default session Timeout for MDATP Security Console Session? From where we can Edit that Timeout? …

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
asked 2020-07-10T13:41:55.137+00:00
karan arora - Network 1 Reputation point
answered 2020-07-10T13:59:41.157+00:00
Leon Laude 85,681 Reputation points
3 answers

azure security center: evaluation export other than CSV

Using Azure security center i am able to see the security score and other recommendations. Is there an option to export the graphical information ? I am only able to do CSV export of the recommendation point. Please do suggest if any.

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
asked 2020-05-21T11:00:22.217+00:00
Vignesh Rajesekaran 1 Reputation point
answered 2020-07-09T08:51:28.3+00:00
Ken Golitin 21 Reputation points
2 answers One of the answers was accepted by the question author.

What triggers a security alert in Azure Security Center?

I have received several security alerts in Azure Security Center. Which activities trigger these alerts? [Note: As we migrate from MSDN, this question has been posted by an Azure Cloud Engineer as a frequently asked question] Source: Security Alerts…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
asked 2020-05-06T21:29:36.007+00:00
Marilee Turscak-MSFT 34,626 Reputation points Microsoft Employee
answered 2020-07-09T08:20:52.167+00:00
Ken Golitin 21 Reputation points
2 answers One of the answers was accepted by the question author.

What is a security policy in Azure Security Center?

What is a security policy in Azure Security Center? To what can I apply a security policy and how can I use them to make my applications and data more secure? [Note: As we migrate from MSDN, this question has been posted by an Azure Cloud Engineer…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
asked 2020-05-06T21:25:50.127+00:00
Marilee Turscak-MSFT 34,626 Reputation points Microsoft Employee
answered 2020-07-09T07:34:09.843+00:00
Ken Golitin 21 Reputation points
3 answers One of the answers was accepted by the question author.

Sending Azure Security alerts to separate email address other than Global Admins?

People, As a member of the Global Admins in Azure I get bombarded by emails from Azure regarding Security alerts, etc..., however, most of the time it is not checked since the account is separate AD account with F3 license (2 GB mailbox quota that…

Azure Notification Hubs
Azure Notification Hubs
An Azure service that is used to send push notifications to all major platforms from the cloud or on-premises environments.
271 questions
Azure Monitor
Azure Monitor
An Azure service that is used to collect, analyze, and act on telemetry data from Azure and on-premises environments.
2,858 questions
Azure Information Protection
Azure Information Protection
An Azure service that is used to control and help secure email, documents, and sensitive data that are shared outside the company.
522 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
Azure App Service
Azure App Service
Azure App Service is a service used to create and deploy scalable, mission-critical web apps.
7,005 questions
asked 2020-07-09T06:16:29.73+00:00
EnterpriseArchitect 4,866 Reputation points
answered 2020-07-09T07:09:02.187+00:00
EnterpriseArchitect 4,866 Reputation points
2 answers

Delet VM Security Center

Hello good night, can you help me. I have several VMs with ATP which are reflected in the Security Center of the portal, currently some VMs have been damaged (inaccessible), now I want to remove it from the Security Center list and I do not see options…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
asked 2020-06-06T02:57:15.917+00:00
ENRIQUE VAZQUEZ MORALES 1 Reputation point
answered 2020-07-09T07:07:32.36+00:00
Ken Golitin 21 Reputation points
0 answers

Hi, I have completed 100% Azure Security, however not appearing under report.

Hi, I have completed 100% Azure Security, however not appearing under my Organization report. My Org is NCR CORP - Information security

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,212 questions
asked 2020-07-01T07:20:00.54+00:00
Munjal, Deepak 1 Reputation point
commented 2020-07-06T16:08:28.177+00:00
JamesTran-MSFT 36,476 Reputation points Microsoft Employee