tamper with logs of analytics workspace

瞭 西谷 1 Reputation point
2021-07-14T09:15:30.733+00:00

From a security perspective is it possible to tamper with logs of analytics workspace ?

Azure Monitor
Azure Monitor
An Azure service that is used to collect, analyze, and act on telemetry data from Azure and on-premises environments.
3,647 questions
{count} votes

1 answer

Sort by: Most helpful
  1. singhh-msft 2,431 Reputation points
    2021-07-14T10:30:50.313+00:00

    @瞭 西谷 , thank you for reaching out to us. Check out Physical security of Log Analytics: The Log Analytics service is managed by Microsoft personnel and all activities are logged and can be audited. Log Analytics is operated as an Azure Service and meets all Azure Compliance and Security requirements. You can view details about the physical security of Azure assets on page 18 of the Microsoft Azure Security Overview. Physical access rights to secure areas are changed within one business day for anyone who no longer has responsibility for the Log Analytics service, including transfer and termination. You can read about the global physical infrastructure we use at Microsoft Datacenters.

    You can also use these additional security features to further secure your Azure Monitor/Log Analytics environment:

    • Customer-managed (security) keys
    • Private / customer-managed Storage
    • Private Link networking
    • Azure customer Lockbox

    I would recommend you to follow Log Analytics data security for enhanced security.

    -----------------------------------------------------------------------------------------------------------

    Please "Accept the answer" and upvote if the information helped you. This will help us and others in the community as well.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.