More Info:

Enable System Updates recommendations for virtual machines.

Risk Level

Low

Address

Operational Maturity, Security

Compliance Standards

SOC2, ISO27001, HIPAA

Triage and Remediation

Remediation

To remediate the “Monitor System Updates setting is not enabled” misconfiguration in Azure using the Azure console, follow these steps:

  1. Log in to the Azure portal (https://portal.azure.com/).
  2. Navigate to the virtual machine that needs to be remediated.
  3. Click on the “Security” tab in the left-hand menu.
  4. Click on the “Security Center” link.
  5. This will open the Azure Security Center. Click on the “Recommendations” tab.
  6. Find the recommendation “Enable monitoring of system updates on virtual machines” and click on it.
  7. This will open the recommendation details page. Click on the “Remediate” button.
  8. In the “Remediate recommendation” window, select the virtual machine that needs to be remediated and click on the “Remediate” button.
  9. Wait for the remediation to complete. This may take several minutes.
  10. Once the remediation is complete, refresh the page to ensure that the “Monitor System Updates” setting is now enabled.

Following these steps will remediate the “Monitor System Updates setting is not enabled” misconfiguration in Azure using the Azure console.