1,200 questions with Microsoft Defender for Cloud-related tags

Sort by: Updated
3 answers

What is difference between Standard edition and Microsoft defender for server Plan 1 and plan 2.

HI Team, I would like to know what is the difference between Standard edition and Microsoft defender for server Plan 1 and plan 2. Assume that somebody upgraded Microsoft Defender for the cloud from the Free tier to the Standard tier. Do we still need…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
asked 2024-03-06T18:36:32.08+00:00
Mahavir Saroj 201 Reputation points
commented 2024-04-01T12:18:28.9233333+00:00
Givary-MSFT 28,406 Reputation points Microsoft Employee
2 answers

assign permissions for Azure workloads

I am reading the article at https://techcommunity.microsoft.com/t5/microsoft-defender-for-cloud/assigning-permissions-in-microsoft-defender-for-cloud/ba-p/1694069 It is indicated that once we re in IAM in the subscription, we should get 2 built-in roles…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
asked 2024-03-29T17:20:18.4033333+00:00
Salam ELIAS 112 Reputation points
answered 2024-04-01T08:45:24.4666667+00:00
Salam ELIAS 112 Reputation points
1 answer

Azure Defender Secure Score and Recommendation Visibility

Just want to check if visibility of Azure Defender Secure Score and Security Recommendations for a subscription is dependent on Defender for cloud plan? And if plan is expired do we get Secure Score as "Not Available". As I definitely …

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
asked 2024-03-25T05:17:05.6433333+00:00
Gorav Gandhi 1 Reputation point
commented 2024-04-01T08:00:36.2833333+00:00
Shweta Mathur 27,936 Reputation points Microsoft Employee
1 answer

Why is the threat removal process taking hours?

A few days ago Windows Defender detected a virus. I put on actions to remove it and it was taking quite some time. It took an entire day of my laptop being turned on and still, it won't go. Well after I shut down the laptop and turned it on, it said that…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
asked 2024-03-23T03:09:32.95+00:00
Ramin Ramin 0 Reputation points
commented 2024-04-01T07:52:58.2066667+00:00
Shweta Mathur 27,936 Reputation points Microsoft Employee
1 answer

What permissions do I need to manage alerts in defender

What permissions do I need to manage alerts in defender?

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
asked 2024-03-22T14:47:43.55+00:00
Timothy Allen 0 Reputation points
commented 2024-04-01T07:42:53.1966667+00:00
Shweta Mathur 27,936 Reputation points Microsoft Employee
1 answer

I want to use Microsoft Defender for Endpoint, but I only want to activate the DLP feature and turn off the other modules. Can I do that?

I want to use Microsoft Defender for Endpoint, but I only want to activate the DLP feature and turn off the other modules. Can I do that?

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
asked 2024-03-22T05:22:12.0966667+00:00
Seyfullah Erduran 0 Reputation points
commented 2024-04-01T07:39:24.16+00:00
Shweta Mathur 27,936 Reputation points Microsoft Employee
1 answer

Microsoft Defender Endpoints - When creating or editing a device group I can only select 'No automated response' in the dropdown of 'Remediation Level'

Basically as the title says. In the create or edit device group menu, my only option is to select 'No Automated Response' in the dropdown of Remediation Level. I've read that automated response should be active by default and you cannot turn it off. My…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
asked 2024-03-19T14:26:29.1866667+00:00
Jonah Albertijn 0 Reputation points
commented 2024-04-01T04:01:54.6666667+00:00
Shweta Mathur 27,936 Reputation points Microsoft Employee
1 answer

Offboarding a Device from MDE with a Deleted Tenant ID

I have a device that was onboarded to MDE under a DemoTenant that no longer exists. Now, I want to offboard it and onboard it to a new tenant. Can someone please assist?

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
Microsoft Defender for Endpoint Training
Microsoft Defender for Endpoint Training
Microsoft Defender for Endpoint: A Microsoft unified security platform for preventative protection, postbreach detection, and automated investigation and response. Previously known as Microsoft Defender Advanced Threat Protection.Training: Instruction to develop new skills.
13 questions
asked 2024-03-28T09:33:03.83+00:00
Danish Batliwala 0 Reputation points
edited a comment 2024-03-29T15:29:46.2566667+00:00
Danish Batliwala 0 Reputation points
2 answers

Is there a way to block "Microsoft Azure PowerShell" for all users?

Greetings, I'm afraid that this one can't be blocked by design, but I will ask anyway. Is there a way to block login attempt from Microsoft Azure PowerShell? We are constantly probed from all around the world, and I can't see to figure out how to block…

Azure Information Protection
Azure Information Protection
An Azure service that is used to control and help secure email, documents, and sensitive data that are shared outside the company.
519 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
Microsoft Intune Security
Microsoft Intune Security
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
343 questions
Microsoft Entra
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,619 questions
asked 2024-03-14T20:59:31.23+00:00
Andy Goldberg 0 Reputation points
commented 2024-03-27T12:01:44.3033333+00:00
Navya 4,155 Reputation points Microsoft Vendor
1 answer One of the answers was accepted by the question author.

Microsoft recommendation error

Got the recommendation by defender "Diagnostic logs in Key Vault should be enabled". So I enabled diagnostic settings on the key vault and attached a storage account to it. Later when I went to check the recommendation status in the defender,…

Azure Key Vault
Azure Key Vault
An Azure service that is used to manage and protect cryptographic keys and other secrets used by cloud apps and services.
1,131 questions
Azure Storage Accounts
Azure Storage Accounts
Globally unique resources that provide access to data management services and serve as the parent namespace for the services.
2,719 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
asked 2024-03-24T12:09:57.1033333+00:00
Shivam Singh 190 Reputation points
accepted 2024-03-26T15:53:05.3166667+00:00
Shivam Singh 190 Reputation points
1 answer One of the answers was accepted by the question author.

Virtual Machine onboarding problem to vulnerability assessment

I have enabled Microsoft Defender as a vulnerability assessment tool for all my VMs within a subscription. Three of them show up in Advisor with title: "Machines should have a vulnerability assessment solution" and details: "Virtual…

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
7,178 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
asked 2024-02-15T16:13:50.5366667+00:00
Kasper Kornak 20 Reputation points
accepted 2024-03-23T20:18:59.2033333+00:00
Kasper Kornak 20 Reputation points
1 answer

Defender for Cloud alerts exported to event hub, but the schema doesn't align with the documented alerts API .

I am reaching out regarding an issue we've encountered while exporting security alerts from Microsoft Defender for Cloud to Azure EventHub.Here are the details of the issue: We are currently sending security alerts from Microsoft Defender for Cloud to…

Azure Event Hubs
Azure Event Hubs
An Azure real-time data ingestion service.
560 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
asked 2024-03-21T11:02:21.0566667+00:00
Nisha Das 0 Reputation points
commented 2024-03-22T09:19:20.1466667+00:00
Nisha Das 0 Reputation points
1 answer One of the answers was accepted by the question author.

Microsoft Store went missing

Hi I just reset My pc But after resetting my pc The App store (Microsoft Store) went missing I dont know how to get it but I need help to reinstall the Microsoft store -Manohar Soren

Windows 365 Enterprise
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
asked 2024-01-11T14:20:53.3733333+00:00
Manohar soren 20 Reputation points
commented 2024-03-21T05:12:15.9+00:00
Paul Chou 21 Reputation points
1 answer

Does the Azure monitor agent collect logs with default settings?

Hello! I have the scope of Azure Arc-enabled servers (on-premise, not Azure VM). There are Azure monitor agents (AMA) installed, so I think that when AMA was deployed, then logs started to be sent to our workspace. I see on the Data collection rules…

Azure Monitor
Azure Monitor
An Azure service that is used to collect, analyze, and act on telemetry data from Azure and on-premises environments.
2,815 questions
Azure Arc
Azure Arc
A Microsoft cloud service that enables deployment of Azure services across hybrid and multicloud environments.
330 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
asked 2024-03-14T11:40:26.8133333+00:00
Oleksandr Romaniuk 465 Reputation points
commented 2024-03-21T03:13:57.2133333+00:00
Silvia Wibowo 3,011 Reputation points Microsoft Employee
1 answer One of the answers was accepted by the question author.

Microsoft Defender for Cloud - exclude ARC enabled machines

Hi all, I have a mix of normal vms and arc-eneabled machines in my subscription. The arc-enabled machines already have enpoint protection software installed so endpoint protection through MDFC is not needed for these machines. I was wondering if I can…

Azure Arc
Azure Arc
A Microsoft cloud service that enables deployment of Azure services across hybrid and multicloud environments.
330 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
asked 2024-03-18T14:02:10.5933333+00:00
NIJSTEN Stephen 80 Reputation points
commented 2024-03-20T12:35:32.2566667+00:00
Andrew Blumhardt 9,496 Reputation points Microsoft Employee
1 answer One of the answers was accepted by the question author.

How can I exclude salesforce chrome extension from conditional access app control policies

I'm testing Salesforce app monitor using MCASB session control policies. To redirect Salesforce app access to MCASB, I created conditional access policies with conditional access app control. Salesforce team is using chrome extension that stop…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,619 questions
asked 2024-03-15T11:28:42.48+00:00
Oscar Rodrigues 20 Reputation points
commented 2024-03-20T09:21:37.3266667+00:00
Oscar Rodrigues 20 Reputation points
2 answers

Want to know Defender CSPM standard plan features in detail.

Want to know Defender CSPM standard plan features in detail. Can anyone help from where i can get the elaborated features details of CSPM standard plan. Below are the features which we have in CSPM standard plan. 1.Identity and role assignments…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
asked 2023-05-11T15:17:40.99+00:00
Prateek Rana 60 Reputation points
commented 2024-03-18T23:02:34.4333333+00:00
Serge 41 Reputation points
1 answer One of the answers was accepted by the question author.

Azure defender for cloud

Currently Azure defender for cloud helps us to check the NIST compliance. I am wondering what additional security measures Azure defender for cloud offers. For example, does it have extra measure to fight against Bots/DDoS Attacks, or does it scan our…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
asked 2024-03-14T19:38:31.1533333+00:00
Yanping Sun 100 Reputation points
accepted 2024-03-18T19:12:20.7566667+00:00
Yanping Sun 100 Reputation points
2 answers

I am receiving this notification from the Defender "Insecure Azure storage account connection string"

I am receiving this notification from the Defender "Insecure Azure storage account connection string" Defender for Cloud found a plaintext storage account connection string. It is important to secure the connection string to avoid its leakage…

Azure Storage Accounts
Azure Storage Accounts
Globally unique resources that provide access to data management services and serve as the parent namespace for the services.
2,719 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
asked 2024-03-14T08:31:19.06+00:00
Pradeep Khantwal 30 Reputation points
edited an answer 2024-03-18T08:46:58.1066667+00:00
Nehruji R 2,126 Reputation points Microsoft Vendor
4 answers One of the answers was accepted by the question author.

NIST checklist

Hi, we are trying to comply with NIST standard. Microfost Defender for Cloud offers NIST checklist. While I working through the list, I am quite confused. One of the failure item is 'Azure Defender for servers should be enabled' which is in regards to…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,200 questions
asked 2024-03-06T15:22:26.87+00:00
Yanping Sun 100 Reputation points
accepted 2024-03-15T21:03:29.7233333+00:00
Yanping Sun 100 Reputation points