1,579 questions with Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud tags
Machines should have vulnerability findings resolved
Suddenly we got many alerts from Microsoft in Azure "Machines should have vulnerability findings resolved" But we could not able to see any vulnerability reported, need help to see what all the vulnerability are.
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Vulnerability Assessment and Penetration Test Report.
Hi Experts, One of our client is requesting a VAPT (Vulnerability Assessment and Penetration Testing) report from the cloud provider. Is it possible to obtain such a report from Microsoft, particularly after addressing any vulnerabilities? We are using…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
MS Defender Automated Simulation Training: How to have new users to live attack simulation training
Hi I am trying to setup MS Defender attack simulation training for staff. I have a number of queries regarding setup. 1: We have a live training campaign which we require all new staff members to complete. Please outline the process of having a new user…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud

Defender for Cloud - "Machines should have vulnerability findings resolved" Stopped Populating
I perform weekly reviews of Microsoft Defender for Cloud's "Recommendations" and have noticed that in the past several weeks, we have not had any findings under the item "Machines should have vulnerability findings resolved". There…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Defender for Endpoint Vulnerability Management Browser Extensions not populating
We recently turned on Defender Vulnerability Management add-on and applied the licenses to our users, but the add-on does not seem to be working properly. It's been 10 days that we have enabled the add-on but so far, only a few devices and a few…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
If Defender for Blob doesn't scan a file (no tags) is there anything we can do to force it to look again?
We have a system that scans all files uploaded to blob on upload. However, we've noticed that occassionally some files just never get scanned (i.e. never get the tags against them). In the documents it does say this can happen if the file throughput is…
Azure Blob Storage
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains a user named Ben Smith. You configure a Password protection for contoso.com that includes the following Custom banned passwords
You have an Azure Active Directory (Azure AD) tenant named contoso.com that contains a user named Ben Smith. You configure a Password protection for contoso.com that includes the following Custom banned passwords settings: Enforce custom list: Yes …
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Microsoft Security | Microsoft Entra | Other
What's "DC only" in Secure recommendation mean?
Hi everyone, When the secure score recommendation has these words "(DC only)", does it mean this only applies to VM that's part of a domain controller? An example of a recommendation: N4W7B6 Ensure 'Audit Distribution Group Management' is…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Enable Microsoft Defender for Cloud Only for Production Resources – Other Plans Should Remain Off
Hello, I'm managing a subscription under Azure subscription 1 and I want to enable Microsoft Defender for Cloud ONLY for production resources (resource group: yell-production-resources). All other environments (dev, qa, staging, etc.) should remain…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud

Is the ppc64le Architecture is supported by MDATP?
I am currently using SUSE Linux Enterprise 15.2 with a ppc64le (PowerPC 64-bit Little Endian) system architecture. While attempting to install Microsoft Defender for Endpoint (MDATP), I encountered the following error: No provider of 'mdatp' found. Could…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Defender for cloud scans aren't running for windows servers
images.pdf Using defender for cloud to scan for package and other vulnerabilities on our Azure VM (see environment settings in attached screenshot). Our VMs are only on when in use (about 8 hours a day). All VM's have the recommendation "machines…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Logic App Workflow Automation Not Triggering for Security Alerts
I have set up a Logic App to trigger workflow automation for security alerts on Microsoft Defender. However, it is not triggering automatically, even after simulating security alerts on the storage account. I can trigger the alerts manually, and I…
Azure Storage
Azure Logic Apps
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Need to offboard the Windows Defender from Windows Servers
hello all, In our organization we have a S1 agent installed on the Windows servers running on Azure, therefore I need to uninstall the Microsoft defender completely from the servers, but even after remove the role for Windows Defender the services…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Windows for business | Windows Server | User experience | Other
Microsoft Defender for Cloud Plan for Azure Servers
Hi, currently we have the basic Foundational CSPM MS Defender for Cloud plan enabled and also Defender CSPM. We would like to enable the Cloud Workload Protection (CWP) plan 2 for our Azure servers that costs around $15/Server/month. We have around 50…
Azure Monitor
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Issues with MS Defender for Cloud Alerts Not Appearing on Security Portal
Experiencing an issue where alerts generated in Microsoft Defender for Cloud on portal.azure.com are not visible in the alerts section of the security.microsoft.com portal. Environment settings have been configured in Azure, all plans enabled for the…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
KQL using SecurityResources needs to return Last Scan time of the AZ SQL database not of the host
I have a KQL query attached that returns the ScanTime but it is not the scan time for the database. It appears to be the scan time for something else ( returns Aug 2 when the database UI shows 7/31). Q: How to change my KQL query to return the scan…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
When ISO27001:2022 will be available for Defender regulatory compliance security framework
We have to add ISO270001:2022 framework in regulatory compliance in Defender for Cloud. However i am only able to see ISO27001:2013 Could you please confirm when 2022 will be available
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Inquiry About Security Score Standards in Microsoft Defender for Cloud
Hello, I am currently supporting the operation of Microsoft Defender for Cloud. I have a question regarding the security score in Microsoft Defender for Cloud. While I understand that a higher security score indicates a safer cloud environment, I…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Security alerts email notifications
I have enabled Microsoft Defender for Cloud antimalware protection on a single storage account. Upon uploading an EICAR file I see security alerts with severity High are created, but I'm not getting any email notifications about them despite doing the…
Azure Blob Storage
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Issue with Defender Recommendations - Linux virtual machines should enable Azure Disk Encryption or EncryptionAtHost.
HI i have 3 virtual machines in azure i have enabled one week back Encryption at host for all machines - Now am seeing - Recommendations - Virtual machines and virtual machine scale sets should have encryption at host enabled is now in healthy…