More Info:

Enable Vulnerability Assessment (VA) setting Also send email notifications to admins and subscription owners

Risk Level

Medium

Address

Security

Compliance Standards

CISAZURE, CBP

Triage and Remediation

Remediation

To remediate this misconfiguration in Azure using the Azure console, follow these steps:

  1. Log in to the Azure portal (https://portal.azure.com/).
  2. Navigate to the Security Center dashboard.
  3. Click on “Security policy” on the left-hand side of the screen.
  4. Select the subscription you want to remediate.
  5. Click on “Vulnerability assessment settings” in the “Security policy” window.
  6. Ensure that the “Email notifications to subscription owners and admins” toggle is turned on.
  7. If the toggle is not turned on, click on the toggle to turn it on.
  8. Click on “Save” to save the changes.

Once you have completed these steps, the vulnerability assessment setting will be configured to send email notifications to subscription owners and admins in case of any security issues.

Additional Reading: