Skip to content

Commit 4a2e112

Browse files
committed
added email notifications attack path
1 parent 741da19 commit 4a2e112

File tree

4 files changed

+33
-15
lines changed

4 files changed

+33
-15
lines changed

articles/defender-for-cloud/configure-email-notifications.md

Lines changed: 21 additions & 13 deletions
Original file line numberDiff line numberDiff line change
@@ -1,17 +1,19 @@
11
---
22
title: Configure email notifications for alerts
3-
description: Learn how to fine-tune the Microsoft Defender for Cloud security alert emails.
3+
description: Learn how to fine-tune the Microsoft Defender for Cloud security alert emails to ensure the right people receive timely notifications.
44
ms.topic: quickstart
55
ms.author: dacurwin
66
author: dcurwin
7-
ms.date: 02/25/2024
7+
ms.date: 05/12/2024
88
ms.custom: mode-other
9+
#customer intent: As a user, I want to learn how to customize email notifications for security alerts in Microsoft Defender for Cloud.
910
---
10-
# Quickstart: configure email notifications for security alerts
1111

12-
Security alerts need to reach the right people in your organization. By default, Microsoft Defender for Cloud emails subscription owners whenever a high-severity alert is triggered for their subscription. This page explains how to customize these notifications.
12+
# Configure email notifications for security alerts
1313

14-
Use Defender for Cloud's **Email notifications** settings page to define preferences for notification emails including:
14+
In this quickstart you will learn how to configure security alert emails in Microsoft Defender for Cloud to ensure that security alerts reach the right people in your organization. By default, Microsoft Defender for Cloud emails subscription owners whenever a high-severity alert is triggered for their subscription. This page explains how to customize these notifications.
15+
16+
Defender for Cloud's **Email notifications** settings page allows you to define preferences for notification emails including:
1517

1618
- ***who* should be notified** - Emails can be sent to select individuals or to anyone with a specified Azure role for a subscription.
1719
- ***what* they should be notified about** - Modify the severity levels for which Defender for Cloud should send out notifications.
@@ -26,25 +28,31 @@ To avoid alert fatigue, Defender for Cloud limits the volume of outgoing emails.
2628

2729
## Availability
2830

29-
|Aspect|Details|
30-
|----|:----|
31-
|Release state:|General availability (GA)|
32-
|Pricing:|Email notifications are free; for security alerts, enable the enhanced security plans ([plan pricing](https://azure.microsoft.com/pricing/details/defender-for-cloud/)) |
33-
|Required roles and permissions:|**Security Admin**<br>**Subscription Owner**<br>**Contributor** |
34-
|Clouds:|:::image type="icon" source="./media/icons/yes-icon.png"::: Commercial clouds<br>:::image type="icon" source="./media/icons/yes-icon.png"::: National (Azure Government, Microsoft Azure operated by 21Vianet)|
31+
Required roles and permissions: Security Admin, Subscription Owner or Contributor.
3532

3633
## Customize the security alerts email notifications via the portal<a name="email"></a>
3734

3835
You can send email notifications to individuals or to all users with specific Azure roles.
3936

40-
1. From Defender for Cloud's **Environment settings** area, select the relevant subscription, and open **Email notifications**.
37+
1. Sign in to the [Azure portal](https://portal.azure.com/).
38+
39+
1. Navigate to **Microsoft Defender for Cloud** > **Environment settings**.
40+
41+
1. Select the relevant subscription.
42+
43+
1. Select **email notifications**.
4144

4245
1. Define the recipients for your notifications with one or both of these options:
4346

4447
- From the dropdown list, select from the available roles.
4548
- Enter specific email addresses separated by commas. There's no limit to the number of email addresses that you can enter.
4649

47-
1. To apply the security contact information to your subscription, select **Save**.
50+
1. Select the notification types:
51+
52+
- **Notify about alerts with the following severity (or higher)** and select a severity level.
53+
- **Notify about attack paths with the following risk level (or higher)** and select a risk level.
54+
55+
1. Select **Save**.
4856

4957
## Customize the alerts email notifications through the API
5058

35.1 KB
Loading

articles/defender-for-cloud/permissions.md

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,7 @@
22
title: User roles and permissions
33
description: This article explains how Microsoft Defender for Cloud uses role-based access control to assign permissions to users and identify the permitted actions for each role.
44
ms.topic: limits-and-quotas
5-
ms.date: 10/09/2023
5+
ms.date: 05/12/2024
66
---
77

88
# User roles and permissions
@@ -32,6 +32,7 @@ The following table displays roles and allowed actions in Defender for Cloud.
3232
| Apply security recommendations for a resource</br> (and use [Fix](implement-security-recommendations.md)) | - | - ||||
3333
| View alerts and recommendations ||||||
3434
| Exempt security recommendations | - ||-|-||
35+
| Configure email notifications | - |||||
3536

3637
The specific role required to deploy monitoring components depends on the extension you're deploying. Learn more about [monitoring components](monitoring-components.md).
3738

articles/defender-for-cloud/release-notes.md

Lines changed: 10 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,7 @@
22
title: Release notes
33
description: This page is updated frequently with the latest updates in Defender for Cloud.
44
ms.topic: overview
5-
ms.date: 05/05/2024
5+
ms.date: 05/12/2024
66
---
77

88
# What's new in Microsoft Defender for Cloud?
@@ -24,13 +24,22 @@ If you're looking for items older than six months, you can find them in the [Arc
2424

2525
|Date | Update |
2626
|--|--|
27+
| May 12 | Configure email notifications for attack paths |
2728
| May 9 | [Checkov integration for IaC scanning in Defender for Cloud (Preview)](#checkov-integration-for-iac-scanning-in-defender-for-cloud-preview) |
2829
| May 7 | [General availability of permissions management in Defender for Cloud](#general-availability-of-permissions-management-in-defender-for-cloud) |
2930
| May 6 | [AI multicloud security posture management is publicly available for Azure and AWS](#ai-multicloud-security-posture-management-is-publicly-available-for-azure-and-aws) |
3031
| May 6 | [Limited public preview of threat protection for AI workloads in Azure](#limited-public-preview-of-threat-protection-for-ai-workloads-in-azure) |
3132
| May 2 | [Updated security policy management is now generally available](#updated-security-policy-management-is-now-generally-available) |
3233
| May 1 | [Defender for open-source databases is now available on AWS for Amazon instances (Preview)](#defender-for-open-source-databases-is-now-available-on-aws-for-amazon-instances-preview) |
3334

35+
### Configure email notifications for attack paths
36+
37+
May 12, 2024
38+
39+
You can now configure email notifications for attack paths in Defender for Cloud. This feature allows you to receive email notifications when an attack path is detected with a specified risk level or higher.
40+
41+
Learn how to [configure email notifications](configure-email-notifications.md).
42+
3443
### Checkov integration for IaC scanning in Defender for Cloud (Preview)
3544

3645
May 9, 2024

0 commit comments

Comments
 (0)