1,566 questions
How to make Defender for cloud workflow automation gets alerts or vulnerability from all subscription and send automatic emails?
Ro_009
0
Reputation points
I'm trying to achieve sending an automatic email in case of any vulnerability detected by Defender for Cloud using its "workflow automation".
I referred to this: https://learn.microsoft.com/en-us/azure/defender-for-cloud/workflow-automation to build the workflow automation. Which is not working as expected. I have a few questions:
- Is Defender for Cloud can be used for vulnerability detection? or should I use other Defender suites? If other suites, what is that?
- How do I know if my workflow automation ran successfully or not?
- From the logic app "activity log", I see "Operation name" > "List Trigger callback URL" status "Succeeded". However, when I see "Development tools" -> "run history," there is no status logged. How is it possible? When the activity log says success, and there is no run history?
- How can I make sure that the workflow I'm creating ( in one of the subscriptions) can provide me all the vulnerabilities from the entire Azure resources/subscriptions?
- How can this vulnerability scanning be extended to other cloud provider assets/resources?
It would be really appreciated if I can get the answers for my above questions. Thanks.
Microsoft Security Microsoft Defender Microsoft Defender for Cloud
Sign in to answer