Discover unprotected assets and vulnerabilities by using Microsoft Defender External Attack Surface Management

Intermediate
Security Engineer
Microsoft Defender for Cloud
Azure

In this module, you use Microsoft Defender External Attack Surface Management (EASM) to discover and secure your external attack surface. You learn how Microsoft Defender External Attack Surface Management (EASM) outside-in discovery complements other Defender tools. EASM uses recursive discovery to find unknown internet-facing assets across your organization, analyze dashboards to prioritize vulnerabilities and security hygiene risks, and integrate EASM findings with Defender CSPM for attack path analysis.

Learning objectives

After completing this module, you'll be able to:

  • Explore EASM features and capabilities, including asset types, asset states, and how outside-in scanning differs from other Defender tools
  • Configure asset discovery using seeds to identify unknown internet-facing infrastructure and asset connections
  • Use EASM dashboards to prioritize vulnerabilities and security hygiene risks across your attack surface
  • Integrate EASM findings with Defender CSPM to analyze attack paths starting from internet-exposed resources

Prerequisites

  • Familiarity with Microsoft Defender for Cloud at a basic level
  • Understanding of Cloud Security Posture Management (CSPM) concepts and capabilities
  • Knowledge of cloud security concepts including misconfigurations, vulnerabilities, and exposure
  • Familiarity with Azure resource types and Azure role-based access control (RBAC)

Get started with Azure

Choose the Azure account that's right for you. Pay as you go or try Azure free for up to 30 days. Sign up.