1,567 questions with Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud tags
Random Azure Defender ON/OFF value on Security Center Inventory screen
We have enabled Azure Defender for one of our SQL Servers and couple days later, when inspecting Security Center Inventory list, we noticed that all of our resources show up with Defender enabled. Launching into investigation of how it happened, we…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
"dangling DNS entries" on Azure Front Door and CDN.
Does ASC covers below alert on Azure Front Door and CDN. "dangling DNS entries"
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Threat Modeling Tool - Version control of my own template
Hi, I have created my own template with TMT-2016, and have created some models with that template. And I find that if I copy these models' elements to a new TMT-2018 model. An error message appears like " You have the threat model based upon…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Approx cost for implementing each Azure Security Center recommendation
Is there any way to find approx cost for implementing each Azure Security Center recommendation.
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Azure Security Recommendation - ADS pricing?
I love the Azure ecosystem, generally, it is very easy to understand pricing and all, but I came across this section where things get a bit hazy, 15USD per server feels like it is only 2/3 of what is required. I have the price I have for what…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Error when deploying Defender for Servers on an AWS EC2 Instance running Linux
HI, Is anyone familiar with the way to resolve this when running Defender for Servers - deployed on an AWS EC2 Instance with Linux OS. We are getting the following error: Microsoft Root Certificate Authority 2011 certificate is not a trusted root…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Data Privacy in Azure Cloud while Data Storage & Model Training
I am working as a Data Scientist at Rxlogix & like deploy Azure Custom Language Translator for our Clients. But there are few Questions/Concerns on which Client wants to get clarification. 1) Data Access while stored in Active Directory Concern…
Azure AI Translator
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
How to use Defender Endpoint to find versions of SSL and TLS on the network
I'd like to use Defender Endpoint to identify all open SSL and TLS ports, and the versions of SSL and TLS on them, on the network covered by Defender Endpoint. Can that be done with a Kusto query? If so, what is the query? I've been looking in the query…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Ingest keyvault ,application logs
We are planning to ingest azure Keyvault and application logs to Sumo logic .Can you Please specify what type of logs we will get from Kayvault and application logs ? what types of use cases we can implement to detect suspicious activities. Please help
Azure Key Vault
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Azure App Service
Microsoft Security | Microsoft Sentinel
Best Practice for Remote Desktop Access of Windows 10 Virtual Machine
Dear Experts, I want to use a Win10 VM on Azure as virtual desktop. For RDP, I will have to open port 3389. I want to know what are best practices for securely using RDP? I saw on Azure that VPN is an option. If I connect from a regular laptop/desktop…
Azure Virtual Machines
Azure VPN Gateway
Windows for business | Windows Client for IT Pros | Devices and deployment | Configure application groups
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Azure Security Center Qualys Vulnerability Scan Stale Recommendations
It seems there are stale recommendations in my security center remediation recommendations. I can't seem to find a manual refresh. Looking in the azure acr, the manifests in question no longer exist. Is there any way we can somehow trigger a…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
MSDLP - Blocking .PST .OST files
Hi , In my organization we were previously using a DLP solution where we mention the "Custom file signature" for outlook files like .pst & .ost files and prevent them sharing outside network. this was working even though if users change…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Microsoft Defender ATP for Linux failed to update definitions with server connected through static proxy
My organization is currently testing Microsoft Defender ATP for Linux on a Redhat 7.9 server through a static proxy, mdatp installed successfully and is onboarding. The problem I met was it couldn't update the definitions, using both automatic update and…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Ingesting Audit and security logs from Azure security center to Sumo logic
we are in azure platform monitoring cloud assets through azure security center. We are planning to ingest some important log sources from azure to Sumo logic .I am searching on some important audit and security logs from azure. If any one have any…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Microsoft Security | Microsoft Entra | Microsoft Entra ID
Microsoft Security | Microsoft Sentinel
Azure Microsoft Malware setting after installation
Hi, I have 2 virtual machines in Azure. VM01 (Windows server 2019 datacenter) and VM02 (Windows server 2019 datacenter) VM01 has extension of Microsoft Malware. VM02 does not has Microsoft Malware extension. I did rdp for both VMs and went to…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
How to get Azure Security center recommandations into Sentinel?
In my organization we have Azure security center and Azure Sentinel in same Workspace and they are connected. But need to know how we can list/query all the recommendations of Security center in sentinel.
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Microsoft Security | Microsoft Sentinel
How can we get disable policies count in Azure Security Center (ASC) Default from Rest API ?
I need to find out how many disable policies in ASC default using Rest API. PFA for Azure Console Screenshot for required data. Here my expected was disable policies are 7 in my ASC Default from my subscription.
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Can't update security or use authenticator app
I have a premium custom email through Outlook.com via my godaddy domain. I have been using that as my Microsoft 365 account primary email. Recently, the Microsoft site made me set up the authenticator app. In doing so, it somehow created an…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Microsoft Security | Microsoft Authenticator
1. Can you trust the Azure Secure Score? Why? At what does it looked at? 2.Is the Azure Secure Score competitive to other scores?
Can you trust the Azure Secure Score? Why? At what does it looked at? 2.Is the Azure Secure Score competitive to other scores?
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Security Center MFA Policy Users report
Hello, How do i get the users that for example are not compliant with "MFA should be enabled on accounts with owner permissions on your subscription" Using the Security Center you get the Subscription and when you click on them you get the…