More Info:

Ensure that Microsoft Defender for Cloud is enabled for Azure App Service instances.

Risk Level

High

Address

Security, Operational Maturity

Compliance Standards

CISAZURE, CBP, HITRUST

Triage and Remediation

Remediation

To remediate the misconfiguration “Enable Microsoft Defender for Cloud for App Service Instances” in Azure using the Azure console, please follow these steps:

  1. Open the Azure portal and navigate to the App Service instance for which you want to enable Microsoft Defender for Cloud.

  2. Click on “Security” from the left-hand menu and then click on “Security Center” from the sub-menu.

  3. In the Security Center, click on “Recommendations” from the left-hand menu.

  4. Search for the recommendation “Enable Microsoft Defender for Cloud for App Service Instances” in the list of recommendations.

  5. Click on the recommendation to view the details.

  6. Click on the “Remediate” button to remediate the recommendation.

  7. In the “Remediate” pane, select the subscription, resource group, and App Service instance for which you want to enable Microsoft Defender for Cloud.

  8. Click on the “Remediate” button to enable Microsoft Defender for Cloud for the selected App Service instance.

  9. Once the remediation is complete, the recommendation status will change to “Compliant”.

By following these steps, you can successfully remediate the misconfiguration “Enable Microsoft Defender for Cloud for App Service Instances” in Azure using the Azure console.