You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/defender-for-cloud/regulatory-compliance-dashboard.md
+26-17Lines changed: 26 additions & 17 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -1,16 +1,16 @@
1
1
---
2
2
title: 'Tutorial: Regulatory compliance checks - Microsoft Defender for Cloud'
3
3
description: 'Tutorial: Learn how to Improve your regulatory compliance using Microsoft Defender for Cloud.'
4
+
author: bmansheim
5
+
ms.author: benmansheim
4
6
ms.topic: tutorial
5
-
ms.date: 11/09/2021
7
+
ms.date: 04/26/2022
6
8
---
7
9
# Tutorial: Improve your regulatory compliance
8
10
9
11
[!INCLUDE [Banner for top of topics](./includes/banner.md)]
10
12
11
-
Microsoft Defender for Cloud helps streamline the process for meeting regulatory compliance requirements, using the **regulatory compliance dashboard**.
12
-
13
-
Defender for Cloud continuously assesses your hybrid cloud environment to analyze the risk factors according to the controls and best practices in the standards that you've applied to your subscriptions. The dashboard reflects the status of your compliance with these standards.
13
+
Microsoft Defender for Cloud helps streamline the process for meeting regulatory compliance requirements, using the **regulatory compliance dashboard**. Defender for Cloud continuously assesses your hybrid cloud environment to analyze the risk factors according to the controls and best practices in the standards that you've applied to your subscriptions. The dashboard reflects the status of your compliance with these standards.
14
14
15
15
When you enable Defender for Cloud on an Azure subscription, the [Azure Security Benchmark](/security/benchmark/azure/introduction) is automatically assigned to that subscription. This widely respected benchmark builds on the controls from the [Center for Internet Security (CIS)](https://www.cisecurity.org/benchmark/azure/) and the [National Institute of Standards and Technology (NIST)](https://www.nist.gov/) with a focus on cloud-centric security.
16
16
@@ -32,7 +32,7 @@ If you don’t have an Azure subscription, create a [free account](https://azure
32
32
To step through the features covered in this tutorial:
33
33
34
34
-[Enable enhanced security features](defender-for-cloud-introduction.md). You can enable these for free for 30 days.
35
-
- You must be signed in with an account that has reader access to the policy compliance data (**Security Reader**is insufficient). The role of **Global reader**for the subscription will work. At a minimum, you'll need to have **Resource Policy Contributor** and **Security Admin** roles assigned.
35
+
- You must be signed in with an account that has reader access to the policy compliance data. The **Global reader**for the subscription has access to the policy compliance data, but the **Security Reader**role does not. At a minimum, you'll need to have **Resource Policy Contributor** and **Security Admin** roles assigned.
36
36
37
37
## Assess your regulatory compliance
38
38
@@ -125,17 +125,26 @@ For example, you might want Defender for Cloud to email a specific user when a c
125
125
126
126
## FAQ - Regulatory compliance dashboard
127
127
128
-
-[What standards are supported in the compliance dashboard?](#what-standards-are-supported-in-the-compliance-dashboard)
129
-
-[Why do some controls appear grayed out?](#why-do-some-controls-appear-grayed-out)
130
-
-[How can I remove a built-in standard, like PCI-DSS, ISO 27001, or SOC2 TSP from the dashboard?](#how-can-i-remove-a-built-in-standard-like-pci-dss-iso-27001-or-soc2-tsp-from-the-dashboard)
131
-
-[I made the suggested changed based on the recommendation, yet it isn't being reflected in the dashboard](#i-made-the-suggested-changed-based-on-the-recommendation-yet-it-isnt-being-reflected-in-the-dashboard)
132
-
-[What permissions do I need to access the compliance dashboard?](#what-permissions-do-i-need-to-access-the-compliance-dashboard)
133
-
-[The regulatory compliance dashboard isn't loading for me](#the-regulatory-compliance-dashboard-isnt-loading-for-me)
134
-
-[How can I view a report of passing and failing controls per standard in my dashboard?](#how-can-i-view-a-report-of-passing-and-failing-controls-per-standard-in-my-dashboard)
135
-
-[How can I download a report with compliance data in a format other than PDF?](#how-can-i-download-a-report-with-compliance-data-in-a-format-other-than-pdf)
136
-
-[How can I create exceptions for some of the policies in the regulatory compliance dashboard?](#how-can-i-create-exceptions-for-some-of-the-policies-in-the-regulatory-compliance-dashboard)
137
-
-[What Microsoft Defender plans or licenses do I need to use the regulatory compliance dashboard?](#what-microsoft-defender-plans-or-licenses-do-i-need-to-use-the-regulatory-compliance-dashboard)
138
-
-[How do I know which benchmark or standard to use?](#how-do-i-know-which-benchmark-or-standard-to-use)
128
+
-[Tutorial: Improve your regulatory compliance](#tutorial-improve-your-regulatory-compliance)
129
+
-[Prerequisites](#prerequisites)
130
+
-[Assess your regulatory compliance](#assess-your-regulatory-compliance)
131
+
-[Improve your compliance posture](#improve-your-compliance-posture)
132
+
-[Generate compliance status reports and certificates](#generate-compliance-status-reports-and-certificates)
133
+
-[Configure frequent exports of your compliance status data](#configure-frequent-exports-of-your-compliance-status-data)
134
+
-[Run workflow automations when there are changes to your compliance](#run-workflow-automations-when-there-are-changes-to-your-compliance)
-[What standards are supported in the compliance dashboard?](#what-standards-are-supported-in-the-compliance-dashboard)
137
+
-[Why do some controls appear grayed out?](#why-do-some-controls-appear-grayed-out)
138
+
-[How can I remove a built-in standard, like PCI-DSS, ISO 27001, or SOC2 TSP from the dashboard?](#how-can-i-remove-a-built-in-standard-like-pci-dss-iso-27001-or-soc2-tsp-from-the-dashboard)
139
+
-[I made the suggested changes based on the recommendation, but it isn't being reflected in the dashboard?](#i-made-the-suggested-changes-based-on-the-recommendation-but-it-isnt-being-reflected-in-the-dashboard)
140
+
-[What permissions do I need to access the compliance dashboard?](#what-permissions-do-i-need-to-access-the-compliance-dashboard)
141
+
-[The regulatory compliance dashboard isn't loading for me](#the-regulatory-compliance-dashboard-isnt-loading-for-me)
142
+
-[How can I view a report of passing and failing controls per standard in my dashboard?](#how-can-i-view-a-report-of-passing-and-failing-controls-per-standard-in-my-dashboard)
143
+
-[How can I download a report with compliance data in a format other than PDF?](#how-can-i-download-a-report-with-compliance-data-in-a-format-other-than-pdf)
144
+
-[How can I create exceptions for some of the policies in the regulatory compliance dashboard?](#how-can-i-create-exceptions-for-some-of-the-policies-in-the-regulatory-compliance-dashboard)
145
+
-[What Microsoft Defender plans or licenses do I need to use the regulatory compliance dashboard?](#what-microsoft-defender-plans-or-licenses-do-i-need-to-use-the-regulatory-compliance-dashboard)
146
+
-[How do I know which benchmark or standard to use?](#how-do-i-know-which-benchmark-or-standard-to-use)
147
+
-[Next steps](#next-steps)
139
148
140
149
### What standards are supported in the compliance dashboard?
141
150
By default, the regulatory compliance dashboard shows you the Azure Security Benchmark. The Azure Security Benchmark is the Microsoft-authored, Azure-specific guidelines for security, and compliance best practices based on common compliance frameworks. Learn more in the [Azure Security Benchmark introduction](../security/benchmarks/introduction.md).
@@ -154,7 +163,7 @@ Some controls are grayed out. These controls don't have any Defender for Cloud a
154
163
### How can I remove a built-in standard, like PCI-DSS, ISO 27001, or SOC2 TSP from the dashboard?
155
164
To customize the regulatory compliance dashboard, and focus only on the standards that are applicable to you, you can remove any of the displayed regulatory standards that aren't relevant to your organization. To remove a standard, follow the instructions in [Remove a standard from your dashboard](update-regulatory-compliance-packages.md#remove-a-standard-from-your-dashboard).
156
165
157
-
### I made the suggested changed based on the recommendation, yet it isn't being reflected in the dashboard
166
+
### I made the suggested changes based on the recommendation, but it isn't being reflected in the dashboard?
158
167
After you take action to resolve recommendations, wait 12 hours to see the changes to your compliance data. Assessments are run approximately every 12 hours, so you'll see the effect on your compliance data only after the assessments run.
159
168
160
169
### What permissions do I need to access the compliance dashboard?
0 commit comments