Azure microsoft CIS

Ensure that Network Security Group (NSG) Flow Logs are Captured and Sent to Log Analytics (Manual)
Description: Network Security Group (NSG) Flow Logs provide valuable information about network traffic that passes through NSGs associated with your Azure ...
Fri, 11 Apr, 2025 at 6:20 AM
Ensure that the Expiration Date is Set for All Secrets in RBAC Key Vaults (Automated)
Description:  Expiration Date for secrets in Azure Key Vault ensures that secrets are automatically marked as expired after a specified period, helping to ...
Fri, 11 Apr, 2025 at 6:20 AM
Ensure that the Expiration Date is Set for All Keys in Non-RBAC Key Vaults (Automated)
Description:  Setting an Expiration Date for keys in Non-RBAC Azure Key Vaults ensures that cryptographic keys used for encryption and decryption operation...
Fri, 11 Apr, 2025 at 6:25 AM
Ensure that Logging for Azure Key Vault is 'Enabled' (Automated)
Description: Azure Key Vault is a cloud service for securely storing and managing sensitive information, such as secrets, keys, and certificates. Enabling ...
Fri, 11 Apr, 2025 at 6:29 AM
Ensure the Storage Account Containing the Container with Activity Logs is Encrypted with Customer Managed Key (CMK) (Automated)
Description: Storage Account encryption with Customer Managed Keys (CMK) provides an additional layer of security by using an organization's own Azure ...
Fri, 11 Apr, 2025 at 6:37 AM
Ensure that the Expiration Date is Set for All Keys in RBAC Key Vaults (Automated)
Description:  Setting an Expiration Date for keys in Azure Key Vault (RBAC-enabled) ensures that keys are not used beyond their intended lifespan. Once the...
Fri, 11 Apr, 2025 at 6:38 AM
Ensure That Microsoft Defender for IoT Hub Is Set To 'On' (Manual)
Description: Microsoft Defender for IoT Hub is a security solution that provides threat detection and protection for Azure IoT Hub. Enabling Microsoft Def...
Fri, 11 Apr, 2025 at 6:43 AM
Ensure Diagnostic Setting Captures Appropriate Categories (Automated)
Description: In Azure, diagnostic settings are used to collect and route log and metric data from Azure resources (such as Azure App Services, Azure Key Va...
Fri, 11 Apr, 2025 at 6:43 AM
Ensure that a 'Diagnostic Setting' Exists for Subscription Activity Logs (Manual)
Description: Subscription Activity Logs provide a record of all management-level operations performed within your Azure subscription. These logs include ac...
Fri, 11 Apr, 2025 at 6:48 AM
Ensure Fewer Than 5 Users Have Global Administrator Assignment (Manual)
Description: Global Administrator is the highest level of administrative privilege within Microsoft Entra ID (formerly Azure Active Directory). Users with...
Fri, 11 Apr, 2025 at 6:59 AM