Automatic CIS Benchmark scan of Windows Servers through Sentinel.

Andersen Emil 20 Reputation points
2023-02-14T08:57:06.1633333+00:00

Hello!

In my job, we regularly use the CIS Benchmark to test Windows Servers from 2012-2022. We have been receiving this from a vendor who automatically runs the checks through Qualys and then presented in a dashboard.

Now we are transitioning to Microsoft Sentinel and I'm wondering if there is a functionality in Sentinel that allows for automated testing of CIS Benchmark on Windows Servers?

Microsoft Security | Microsoft Entra | Microsoft Entra ID
Microsoft Security | Microsoft Sentinel
0 comments No comments
{count} votes

Accepted answer
  1. Limitless Technology 44,766 Reputation points
    2023-02-14T16:24:33.1333333+00:00

    Hi. Thank you for your question and reaching out. I’d be more than happy to help you with your query

    Microsoft Sentinel is a Security Information and Event Management (SIEM) solution, and it doesn't have a built-in capability to automate CIS Benchmark testing on Windows Servers. However, you can use Microsoft Azure Security Center to automate CIS Benchmark testing on Windows Servers. Azure Security Center provides a CIS Benchmark scanning solution that scans the configuration of your Windows Server against the corresponding CIS Benchmark profile, and generates a report of findings. You can also configure Azure Security Center to trigger alerts when there are deviations from the benchmark profile.

    If the reply was helpful, please don’t forget to upvote or accept as answer, thank you.

    2 people found this answer helpful.

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.