Apply Security baselines from Intune to Azure VM resources

Alain Diaz Quesada 60 Reputation points
2023-06-05T09:37:19.3266667+00:00

Hi

Is there a way to deploy Security baselines to azure VMs for compliancy
i know i can use Automanage in Azure but Automanage does not cover a lot of aaspects of the security.

What are the methods to ensure security compliance or best practices to Deploy security baselines to Azure Windows VM servers.

Thanks in advance.

Azure Virtual Machines
Azure Virtual Machines
An Azure service that is used to provision Windows and Linux virtual machines.
9,033 questions
{count} votes

Accepted answer
  1. Crystal-MSFT 53,986 Reputation points Microsoft External Staff
    2023-06-06T05:36:49.2066667+00:00

    @Alain Diaz Quesada, Thanks for posting in Q&A. Based as I know, it is possible to apply security baselines from Intune to Azure VM resources. You can use Azure Policy and Microsoft Intune to enforce security configurations on Azure resources.

    Azure Policy allows you to define and enforce policies for resources in your Azure subscription. You can use built-in policy definitions to ensure compliance with security baselines, or you can create custom policies based on your organization's unique security requirements. For example, you can use the built-in policy definition "Audit Windows VMs that do not use managed disks" to ensure that all Windows VMs in your subscription are using managed disks for improved security.

    Microsoft Intune allows you to create and deploy Windows security baselines to Azure VMs. You can create a security baseline in Microsoft Intune that includes the security policies you want to enforce, such as password policies, firewall settings, and encryption requirements. You can then deploy the security baseline to a group of Azure VMs to ensure they are all configured according to the same security standards.

    It's important to note that Azure Policy and Microsoft Intune can work together to provide comprehensive security management for your Azure resources. You can use Azure Policy to enforce compliance with security standards, and use Endpoint Manager to configure the specific security settings on your VMs.

    Additional Resources:


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    1 person found this answer helpful.

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.