poc of security scanning tools-veracode,qualys for web apps hosted in azure

Kumar, Saluja 1 Reputation point
2020-08-26T07:57:14.7+00:00

We want to perform Proof-of-concept on Web Application Vulnerability scanning tools -veracode to web apps hosted at azure.is there any specific requirement from microsoft to perform it.Any help or if anyone have performed.

Azure App Service
Azure App Service
Azure App Service is a service used to create and deploy scalable, mission-critical web apps.
7,660 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. ajkuma 25,781 Reputation points Microsoft Employee
    2020-08-27T14:26:25.467+00:00

    Thanks for posting a good question!

    Apologies for the delay.

    If I understand your question correctly. While notifying Microsoft of pen testing activities is no longer required users must still comply with the Microsoft Cloud Unified Penetration Testing Rules of Engagement.

    You may refer this document from Qualys which outlines detailed information about the requirement/POC.
    Note: This post contains a third-party site for your reference & convenience to you only and is not controlled by Microsoft.

    You can use this reference guide if your Website is hosted on Azure App Service with Security Center

    If you have any further questions, please let us know we would be happy to assist you.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.