More Info:

Roles which can be assumed by Security Services

Risk Level

High

Address

Security

Compliance Standards

CBP

Triage and Remediation

Remediation

To remediate the misconfiguration “Roles Assumable By Security Services” in AZUREIAM using the AZURE console, follow these step-by-step instructions:

  1. Sign in to the AZURE portal (https://portal.azure.com) using your credentials.
  2. In the left-hand menu, click on “Azure Active Directory”.
  3. Under “Manage”, click on “Roles and administrators”.
  4. On the “Roles and administrators” page, you will see a list of built-in roles. Click on the role that you want to remediate (e.g., “Security Administrator”).
  5. In the role details page, click on the “Properties” tab.
  6. Scroll down to the “Permissions” section and click on the “Add permissions” button.
  7. In the “Add permissions” pane, search for and select the appropriate security service (e.g., “Azure Security Center”).
  8. Click on the “Add permissions” button to add the security service to the role.
  9. Review the other properties of the role and make any necessary changes.
  10. Click on the “Save” button to save the changes to the role.

Repeat steps 4-10 for any other roles that are affected by the misconfiguration.

By following these steps, you have now remediated the “Roles Assumable By Security Services” misconfiguration in AZUREIAM using the AZURE console.