turbot/azure_compliance

Control: Resource logs in Key Vault should be enabled

Description

Audit enabling of resource logs. This enables you to recreate activity trails to use for investigation purposes when a security incident occurs or when your network is compromised.

Usage

Run the control in your terminal:

powerpipe control run azure_compliance.control.keyvault_logging_enabled

Snapshot and share results via Turbot Pipes:

powerpipe login
powerpipe control run azure_compliance.control.keyvault_logging_enabled --share

SQL

This control uses a named query:

keyvault_logging_enabled

Tags