Azure microsoft CIS

Ensure Redundancy is set to 'geo-redundant storage (GRS)' on critical Azure Storage Accounts (Automated)
Description:  To ensure that Azure Storage Accounts are configured with high availability and resilience, this recommendation mandates the use of Geo-Redund...
Thu, 10 Apr, 2025 at 6:45 AM
Ensure Azure Resource Manager ReadOnly Locks are Considered for Azure Storage Accounts
Description: Azure Resource Manager (ARM) ReadOnly locks help protect resources by preventing accidental modification or deletion. These locks ensure that...
Thu, 10 Apr, 2025 at 7:17 AM
Ensure Azure Resource Manager Delete Locks are Applied to Azure Storage Accounts
Description:  Azure Resource Manager (ARM) Delete locks prevent the deletion of Azure resources, including Azure Storage Accounts. Applying a Delete lock t...
Thu, 10 Apr, 2025 at 7:20 AM
Ensure that 'Allow Blob Anonymous Access' is Set to 'Disabled' (Automated)
Description: The "Allow Blob Anonymous Access" setting in Azure Storage Accounts controls whether anonymous users (users not authenticated with ...
Thu, 10 Apr, 2025 at 7:28 AM
Ensure 'Cross Tenant Replication' is Not Enabled (Automated)
Description:  The 'Cross Tenant Replication' setting in Azure Storage Accounts enables replication of data across multiple tenants. This feature al...
Thu, 10 Apr, 2025 at 7:33 AM
Ensure that 'Owners can manage group membership requests in My Groups' is Set to 'No' (Manual)
Description: The 'Owners can manage group membership requests in My Groups' setting determines whether group owners can manage membership requests ...
Fri, 11 Apr, 2025 at 2:05 AM
Ensure the 'Minimum TLS version' for Storage Accounts is Set to 'Version
Description:  The "Minimum TLS version" setting in Azure Storage Accounts defines the minimum version of the Transport Layer Security (TLS) proto...
Fri, 11 Apr, 2025 at 2:39 AM
Ensure Soft Delete is Enabled for Azure Containers and Blob Storage (Automated)
Description:  Soft delete for Azure Blob Storage allows you to recover deleted blobs and containers within a retention period. When soft delete is enabled,...
Fri, 11 Apr, 2025 at 2:44 AM
Ensure That 'User Consent for Applications' is Set to 'Allow User Consent for Apps from Verified Publishers, for Selected Permissions' (Manual)
Description: The 'User consent for applications' setting in Microsoft Entra ID (formerly Azure Active Directory) defines whether users can grant t...
Fri, 11 Apr, 2025 at 2:49 AM
Ensure that 'Guest Users Access Restrictions' is Set to 'Guest User Access is Restricted to Properties and Memberships of Their Own Directory Objects' (Automated)
Description: The 'Guest users access restrictions' setting in Microsoft Entra ID (formerly Azure Active Directory) controls what guest users can a...
Fri, 11 Apr, 2025 at 2:54 AM