Assign Ownership and ETA to Azure security advisory

Ben Pymer 0 Reputation points
2023-10-03T10:33:18.5833333+00:00

Hi, Would anyone be able to tell me how to delegate ownership and set the ETA of an azure security advisory? i am a subscription owner but these options are grayed out (see screen shot) and unavailable on every single advisory. I need to be able to delegate these out to various teams / individuals for resolution.

Any advice appreciated,

Many thanks

azure owner

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,229 questions
Azure Advisor
Azure Advisor
An Azure personalized recommendation engine that helps users follow best practices to optimize Azure deployments.
47 questions
{count} votes

2 answers

Sort by: Most helpful
  1. JimmySalian-2011 41,956 Reputation points
    2023-10-03T11:46:07.9766667+00:00

    Hi,

    Can you go through the table and set the RBAC permissions as required - https://learn.microsoft.com/en-us/azure/advisor/permissions

    https://learn.microsoft.com/en-us/azure/role-based-access-control/built-in-roles

    Hope this helps.

    JS

    ==

    Please Accept the answer if the information helped you. This will help us and others in the community as well.

    0 comments No comments

  2. SwathiDhanwada-MSFT 18,121 Reputation points
    2023-10-10T18:42:21.48+00:00

    Ben Pymer Welcome to Microsoft Q & A Community Forum. From the information provided, I assume you are using Foundational CSPM. Defender for Cloud offers foundational multicloud CSPM capabilities for free. These capabilities are automatically enabled by default on any subscription or account that has onboarded to Defender for Cloud. The foundational CSPM includes asset discovery, continuous assessment and security recommendations for posture hardening, compliance with Microsoft Cloud Security Benchmark (MCSB), and a Secure score which measure the current status of your organization's posture.

    The optional Defender CSPM plan provides advanced posture management capabilities such as Attack path analysis, Cloud security explorer, advanced threat hunting, security governance capabilities, and also tools to assess your security compliance with a wide range of benchmarks, regulatory standards, and any custom security policies required in your organization, industry, or region.

    So, for all governance capabilities, such as "Assign owner" and "Change owner and set ETA", you need to have Defender CSPM plan enabled within Microsoft Defender for cloud. To enable it, you need to go to environmental setting>>Switch on Defender Cloud Security Posture Management (CSPM).

    For more information, you can refer below documents.

    0 comments No comments