turbot/azure_compliance

Control: Azure Defender for servers should be enabled

Description

Azure Defender for servers provides real-time threat protection for server workloads and generates hardening recommendations as well as alerts about suspicious activities.

Usage

Run the control in your terminal:

powerpipe control run azure_compliance.control.securitycenter_azure_defender_on_for_server

Snapshot and share results via Turbot Pipes:

powerpipe login
powerpipe control run azure_compliance.control.securitycenter_azure_defender_on_for_server --share

SQL

This control uses a named query:

securitycenter_azure_defender_on_for_server

Tags