More Info:

At least one security contact email should be set.

Risk Level

Low

Address

Security

Compliance Standards

CISAZURE, CBP

Triage and Remediation

Remediation

To remediate the misconfiguration of “No Security Contact Email Set” in Azure, you can follow these steps:

  1. Log in to the Azure portal (https://portal.azure.com/).
  2. Click on the “Security Center” icon from the left-hand menu.
  3. In the Security Center, click on “Security policy” from the left-hand menu.
  4. Under the “Policy Management” section, click on the policy that is not compliant with the email set requirement.
  5. In the policy details, click on the “Edit” button.
  6. In the “Edit policy” window, scroll down to the “Notifications” section.
  7. Ensure that the “Send email notifications” toggle is set to “On”.
  8. In the “Security contact email” field, enter the email address that should receive the security notifications.
  9. Click on the “Save” button to save the changes.
  10. Verify that the policy is now compliant by checking the “Compliance” status in the policy details.

By following these steps, you have now remediated the misconfiguration of “No Security Contact Email Set” in Azure.