More Info:

Enable alerts related to threat detections.

Risk Level

Medium

Address

Security

Compliance Standards

CISAZURE, CBP, HITRUST, SOC2, NISTCSF, PCIDSS

Triage and Remediation

Remediation

To remediate the misconfiguration “Threat Detection Alerts Disabled for SQL Databases” in Azure using the Azure console, follow these steps:

  1. Log in to the Azure portal (https://portal.azure.com/).
  2. Navigate to the Azure SQL Database that has the misconfiguration.
  3. Click on the “Security” tab in the left-hand menu.
  4. Click on the “Advanced Data Security” option.
  5. Click on the “Configure advanced data security” button.
  6. In the “Advanced Data Security” blade, toggle the “Threat detection” option to “On”.
  7. Select the “Send alerts to” option and provide an email address to receive the alerts.
  8. Set the “Alerts” threshold to the desired level.
  9. Click on the “Save” button to save the changes.

Once you have completed these steps, threat detection alerts will be enabled for the Azure SQL Database and you will receive alerts when any threats are detected.