Azure Misconfigurations
Security Center Audit
Checks performed
- Monitoring Agent is not provisioned
- No Security Contact Set
- No Security Contact Email Set
- No Security Contact Phone Set
- Sending Email to Security Contact on Alert Is Off
- Sending Email to Administrators on Alert Is Off
- Monitor System Updates setting is not enabled
- Monitor OS Vulnerabilities setting is not enabled
- Monitor Endpoint Protection setting is not enabled
- Monitor Disk Encryption setting is not enabled
- Monitor Network Security Group setting is not enabled
- Monitor Web Application Firewall setting is not enabled
- Monitor Next Generation Firewall (NGFW) setting is not enabled
- Monitor Vulnerability Assessment setting is not enabled
- Monitor Storage Blob Encryption setting is not enabled
- Monitor JIT Network Access setting is not enabled
- Monitor Adaptive Application Whitelisting setting is not enabled
- Monitor SQL Auditing setting is not enabled
- Monitor SQL Encryption setting is not enabled
- Enable DDoS Protection Standard Monitoring for Public Virtual Networks
- Enable Monitoring of Deprecated Accounts
- Enable Virtual Machine IP Forwarding Monitoring
- Monitor External Accounts with Write Permissions
- Monitor the Total Number of Subscription Owners
- Enable Microsoft Defender for Cloud for App Service Instances
- Enable Microsoft Defender for Cloud for Azure Containers
- Enable Microsoft Defender for Cloud for Azure SQL Database Servers
- Enable Microsoft Defender for Cloud for Key Vaults
- Enable Microsoft Defender for Cloud for SQL Server Virtual Machines
- Enable Microsoft Defender for Cloud for Storage Accounts
- Enable Microsoft Defender for Cloud for Virtual Machines
- Enable Microsoft Defender Standard Pricing Tier
- Enable Microsoft Defender for Cloud Apps Integration
- Ensure That Defender For Cloud Integration Is Enabled.
- Ensure that Microsoft Azure Security Center recommendations are examined and resolved.
- Ensure Not Allowed Resource Types Policy Assignment In Use
- Ensure Security Alert Emails Set To Subscription Owners