More Info:

Threat detection retention period should be greater than defined days. Default 90 days.

Risk Level

Medium

Address

Reliability, Security

Compliance Standards

HITRUST, SOC2, NISTCSF, PCIDSS

Triage and Remediation

Remediation

Step-by-step instructions to remediate the misconfiguration “Short Threat Detection Retention Period for SQL Databases” for Azure using the Azure console are:

  1. Login to Azure portal (https://portal.azure.com/).
  2. Navigate to the SQL server that has the short threat detection retention period.
  3. Click on the “Security” tab on the left-hand side of the page.
  4. Under “Advanced Threat Protection”, click on “Advanced Threat Protection settings”.
  5. In the “Advanced Threat Protection settings” page, scroll down to the “Data retention” section.
  6. Increase the retention period to the desired duration.
  7. Click on the “Save” button to save the changes.

By following these steps, you will remediate the misconfiguration “Short Threat Detection Retention Period for SQL Databases” for Azure using the Azure console.