More Info:

Configure ‘Send scan reports to’ with email ids of concerned data owners/stakeholders for a critical SQL servers.

Risk Level

Medium

Address

Security

Compliance Standards

CISAZURE, CBP

Triage and Remediation

Remediation

To remediate the misconfiguration “Ensure That Vulnerability Assessment Setting Send Scan Reports To Is Configured” in Azure, please follow the below steps:

  1. Login to your Azure portal.
  2. Select the subscription where you want to remediate the misconfiguration.
  3. Go to the Security Center in the left-hand menu.
  4. Click on “Security policy” in the Security Center dashboard.
  5. Scroll down to the “Vulnerability Assessment” section and click on it.
  6. Click on the “Edit settings” button.
  7. Scroll down to the “Scan Reports” section.
  8. Ensure that the “Send scan reports to” option is set to a valid email address or a storage account.
  9. If you want to send the scan reports to an email address, enter the email address in the text box.
  10. If you want to send the scan reports to a storage account, select the storage account from the drop-down list.
  11. Click on the “Save” button to save the changes.

After completing these steps, the misconfiguration “Ensure That Vulnerability Assessment Setting Send Scan Reports To Is Configured” will be remediated in Azure.

Additional Reading: