Enable the detection of Azure virtual machine (VM) vulnerabilities by using the Microsoft Defender for Cloud vulnerability assessment. Once the feature is enabled, Microsoft Defender for Cloud searches your Azure virtual machines for deployed vulnerability assessment solutions and if doesn't find any, it recommends that you install one.
This rule resolution is part of the Conformity Security & Compliance tool for Azure.
Once the feature is enabled, Microsoft Defender for Cloud can determine if your Azure virtual machines (VMs) have vulnerability assessment software installed, and depending on the required software deployment, the service will recommend a vulnerability assessment solution be installed on your VMs.
Audit
To determine if a vulnerability assessment solution is enabled for your Microsoft Azure virtual machines (VMs), perform the following actions:
Remediation / Resolution
To ensure that a vulnerability assessment solution is enabled for your Microsoft Azure virtual machines (VMs), perform the following actions:
References
- Azure Official Documentation
- Microsoft Defender for Cloud documentation
- What is Microsoft Defender for Cloud?
- Azure Policy built-in policy definitions
- Manage security policies
- Azure Command Line Interface (CLI) Documentation
- az
- az account get-access-token
Unlock the Remediation Steps
Free 30-day Trial
Automatically audit your configurations with Conformity
and gain access to our cloud security platform.
You are auditing:
Monitor Vulnerability Assessment
Risk Level: Medium