1,250 questions with Microsoft Defender for Cloud-related tags

Sort by: Updated
1 answer

Security Center - Monitoring agent should be installed

Hi I added to Azure Sec Center a few on-premise servers. From time to time this servers get status Unmonitored. I see Recomendation - Monitoring Agent should be installed on your machine. But it is installed and works ok.

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2020-10-14T08:07:11.88+00:00
Илья Рудь 1 Reputation point
answered 2020-10-14T20:26:23.41+00:00
James Hamil 22,976 Reputation points Microsoft Employee
1 answer

Azure Enterprise Agreement

Where can i find a copy of my initial Enterprise Agreement?

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2020-10-07T14:27:52.46+00:00
Darcy Kirchner 1 Reputation point
commented 2020-10-08T17:12:14.343+00:00
JamesTran-MSFT 36,531 Reputation points Microsoft Employee
0 answers

Activating Email section of MTP Advanced Hunting

I am working on a few different Microsoft 365 tenants and use advanced hunting frequently in my job. However, the "Email" section (EmailEvents++) of Advanced Hunting is missing on a few of the tenants. Does anyone know how to enable this?…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2020-10-06T06:19:00.223+00:00
Sigurd 1 Reputation point
commented 2020-10-07T01:27:31.467+00:00
AndyLiu-MSFT 586 Reputation points
1 answer

Azure Security Center List Alerts - empty results response that includes nextLink

Hello, I'm making a call to list ASC alerts for a specific time range using the following REST API: https://video2.skills-academy.com/en-us/rest/api/securitycenter/alerts/list In the response I'm getting back a 'nextLink' attribute even though I'm not…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2020-10-05T17:52:13.85+00:00
Matthew Kracht 21 Reputation points
commented 2020-10-06T23:33:07.067+00:00
James Hamil 22,976 Reputation points Microsoft Employee
1 answer

An unexpected error occurred during query execution. Please try again in a few minutes. while running Advanced Hunting Query on MS ATP

While running below query over Advance Hunting I got "An unexpected error occurred during query execution. Please try again in a few minutes." I am not sure about the error but would like to understand why the error and how to resolve the…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2020-10-01T10:56:50.547+00:00
Pratik Pashte 1 Reputation point
commented 2020-10-06T19:59:39.853+00:00
JamesTran-MSFT 36,531 Reputation points Microsoft Employee
1 answer

How can i get AZ-500 Exam Voucher ?

Hi Sir, I find the AZ-500 free eligible training on Microsoft events site. but i couldn't find out. How can i get exam voucher for AZ-500?

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2020-10-06T11:07:44.6+00:00
Janashraj Visvanathan 6 Reputation points
answered 2020-10-06T11:16:32.917+00:00
Leon Laude 85,716 Reputation points
1 answer One of the answers was accepted by the question author.

Builtin Azure Service that automatically updates the attack signature heuristically ?

Hi Experts, We have the need to secure the Application Gateway and hundreds of API exposed to the Internet as part of our production environment, Using the existing builtin, Azure services, How to make it secure from Unknown Threat or 0-day attack…

Azure Firewall
Azure Firewall
An Azure network security service that is used to protect Azure Virtual Network resources.
599 questions
Azure Web Application Firewall
Azure Firewall Manager
Azure Firewall Manager
An Azure service that provides central network security policy and route management for globally distributed, software-defined perimeters.
88 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2020-09-15T04:39:31.373+00:00
EnterpriseArchitect 5,036 Reputation points
commented 2020-10-06T05:32:04.21+00:00
GitaraniSharma-MSFT 49,171 Reputation points Microsoft Employee
1 answer

security defaults how does it deal with older MFA users without Authenticator app

Hi, I am in the middle of enabling Security defaults in a small business. We have previously enabled MFA for some portion of users, mostly using sms verification method. Now that we have enabled security defaults, I wonder what would happen to these…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2020-10-05T07:33:00.94+00:00
Wonho Lee 1 Reputation point
answered 2020-10-05T18:57:26.627+00:00
1 answer

Latest Notable Events in Security Center, Do we have top 20 or 50 Notable Security Events which must be in SOC Dashboard or as Query?

Latest Notable Events in Security Center Do we have top 20 or 50 Notable Security Events which must be in SOC Dashboard or as Query? Similar which was available in below link …

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2020-09-29T20:44:21.907+00:00
Sohail Patel 0 Reputation points
commented 2020-10-01T16:13:30.583+00:00
Sohail Patel 0 Reputation points
1 answer One of the answers was accepted by the question author.

Reconnaissance using Directory Services queries

We have been receiving floods of alert on "Reconnaissance using Directory Services queries" with newly created account. machine across the domain is trying to queried the newly created account. when checking few of the source…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Configuration Manager
asked 2020-09-08T07:31:46.573+00:00
Fahad Noaman 151 Reputation points
commented 2020-10-01T08:23:57.373+00:00
Fahad Noaman 151 Reputation points
1 answer

ASC Recommendations

For ASC Recommendations, some of the refer to machines and some say virtual machines. Are machines specifically referring to on prem computers?

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2020-09-25T13:31:39.053+00:00
James Alaniz 1 Reputation point
commented 2020-09-28T17:00:47.167+00:00
JamesTran-MSFT 36,531 Reputation points Microsoft Employee
0 answers

Org-Wide Sharing Alerts

Hi All, Has anyone implemented a solution to alert Admins when someone has shared a file / folder with all of their organisation ? "For example, Bob in finance office accidentally shares a confidential budget folder via OneDrive with everyone…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2020-08-24T14:44:08.23+00:00
Delroy McKenzie (IT Services) 26 Reputation points
commented 2020-09-28T15:10:50.497+00:00
Delroy McKenzie (IT Services) 26 Reputation points
3 answers

azure seucrity preparation with free tier

HI guys , i am preparing for azure security certification. I am wondering whether, the free tier account be sufficent to pracitice the labs for the certification?.

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2020-06-01T15:14:09.357+00:00
haris khan 21 Reputation points
answered 2020-09-28T06:47:22.09+00:00
Michael Chow Kin Man 1 Reputation point
1 answer

Manage security alerts in M365 Security Center or Sentinel or separately?

I am having some questions and would like to receive opinions that can contribute. I have the solutions in my environment and I'm in doubt about how to centralize everything. I have Azure Sentinel receiving the Defender Atp, MCASB, Azure ATp,…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Sentinel
Microsoft Sentinel
A scalable, cloud-native solution for security information event management and security orchestration automated response. Previously known as Azure Sentinel.
1,040 questions
asked 2020-09-15T19:59:12.027+00:00
Luizao_f 1 Reputation point
commented 2020-09-25T23:42:59.013+00:00
JamesTran-MSFT 36,531 Reputation points Microsoft Employee
1 answer

Low Security for one single user

I wanted to find a way to set a user as super low security. Just to allow him to access OWA. The domain usually has high security on each user, but this user is a consultant and just needs access to an exchange shared mailbox. I am using Office365 and…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,350 questions
asked 2020-09-14T15:26:45.897+00:00
Matthew Ledvina 1 Reputation point
commented 2020-09-25T23:40:41.047+00:00
JamesTran-MSFT 36,531 Reputation points Microsoft Employee
1 answer

Need Licensing and configuration information of inbuilt qualys security scanner

I would like to enable the built in qualys vulnerability scanner on all applicable VM's in our subscription, and would like to do this via arm templates so that every time we create a VM with our scripts the built in scanner extension get enabled. But…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2020-09-18T04:23:39.827+00:00
-, Sathyamoorthy 1 Reputation point
commented 2020-09-25T23:40:24.48+00:00
JamesTran-MSFT 36,531 Reputation points Microsoft Employee
1 answer

What is causing my security center costs to change?

I don't understand the Security Center pricing, and I'd like to understand how I can control it. I am getting charged about $50 monthly - is this something I can turn off? My costs go up and down on different days. Why would it change and is is…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2020-09-17T00:11:12.23+00:00
c.lashley 6 Reputation points
commented 2020-09-25T23:39:55.287+00:00
JamesTran-MSFT 36,531 Reputation points Microsoft Employee
1 answer

Design risk and compliance governance and monitoring in Azure

Hi, Would like to ask the following. I have a background in Risk & Compliance Management and would like to ask if there are also certifications that train you in designing the compliance and risk governance in Azure? By this I mean. Design the…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2020-09-25T19:15:11.357+00:00
hifong tung 1 Reputation point
commented 2020-09-25T23:39:24.893+00:00
JamesTran-MSFT 36,531 Reputation points Microsoft Employee
0 answers

ATP automated remediation

Hello I am trying to setup ATP Fully automatic remediation so i dont have to manual approve each remediations step. According to the link below you can setup device groups to accomplish this. My question is can full remediation be applied to email…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2020-09-23T03:11:43.367+00:00
berketjune2012 371 Reputation points
commented 2020-09-24T01:15:32.563+00:00
AndyLiu-MSFT 586 Reputation points
1 answer One of the answers was accepted by the question author.

What is the difference between publishing/assigning regulatory compliance with Azure Blueprint / Policy vs Security Center?

It looks like Azure Blueprint and Azure Policy are part of the same process, but I get confused by the option of applying e.g. ISO 27001 in three different places, with Azure Security Center as a third option. What are the differences here? Where do you…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
asked 2020-09-22T08:57:23.063+00:00
Linda Renate Andersen 196 Reputation points
accepted 2020-09-22T19:06:34.343+00:00
Linda Renate Andersen 196 Reputation points