You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/defender-for-cloud/ai-onboarding.md
+6-8Lines changed: 6 additions & 8 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -7,7 +7,7 @@ ms.date: 05/02/2024
7
7
8
8
# Onboard Defender for AI Workloads
9
9
10
-
To get started, you must [sign up](https://aka.ms/D4AI/PublicPreviewAccess) for the plan and be accepted. Once accepted, you can onboard the Defender for AI Workloads plan in Defender for Cloud to provide threat protection for AI workloads in your Azure environment.
10
+
The Defender for AI Workloads plan in Microsoft Defender for Cloud provides AI threat protection capabilities that can help you identify and respond in real time to security issues in your generative AI applications.
11
11
12
12
> [!IMPORTANT]
13
13
> The Defender for AI Workloads plan is currently in preview.
@@ -21,11 +21,13 @@ To get started, you must [sign up](https://aka.ms/D4AI/PublicPreviewAccess) for
21
21
22
22
- You must [enable Defender for Cloud](get-started.md#enable-defender-for-cloud-on-your-azure-subscription) on your Azure subscription.
23
23
24
-
-Defender for AI Workloads relies on [Azure OpenAI content filtering](../ai-services/openai/concepts/content-filter.md) for prompt-base triggered alert. If you opt out of prompt-based trigger alerts and removed that capability, it can affect Defender for Cloud's ability to monitor and detect such attacks.
24
+
-We recommend that you don't opt out of prompt based prompt-base triggered alerts for [Azure OpenAI content filtering](../ai-services/openai/concepts/content-filter.md). If you opt out of prompt-based trigger alerts and remove that capability, it can affect Defender for Cloud's ability to monitor and detect such attacks.
25
25
26
-
## Enroll in the limited public preview
26
+
## Enroll in the limited preview
27
27
28
-
Before you can start to use the Defender for AI Workloads plan, you must enroll in the limited public preview program.
28
+
To get started, you must [sign up](https://aka.ms/D4AI/PublicPreviewAccess) for the plan and be accepted.
29
+
30
+
Once accepted, you can onboard the Defender for AI Workloads plan in Defender for Cloud to provide threat protection for AI workloads in your Azure environment.
29
31
30
32
1. Fill out the [registration form](https://aka.ms/D4AI/PublicPreviewAccess).
31
33
@@ -49,10 +51,6 @@ You can enable the Defender for AI Workloads plan on an Azure subscription.
49
51
50
52
:::image type="content" source="media/ai-onboarding/enable-ai-workloads-plan.png" alt-text="Screenshot that shows you how to toggle the Defender for AI Workloads plan to on." lightbox="media/ai-onboarding/enable-ai-workloads-plan.png":::
51
53
52
-
### Remediate alerts
53
-
54
-
After onboarding the Defender for AI Workloads plan, you can [manage and remediate the security alerts](managing-and-responding-alerts.yml) that are generated for your AI workloads.
Copy file name to clipboardExpand all lines: articles/defender-for-cloud/ai-security-posture.md
+5-5Lines changed: 5 additions & 5 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -10,15 +10,15 @@ author: Elazark
10
10
11
11
# AI security posture management
12
12
13
-
Microsoft Defender for Cloud provides AI security posture management capabilities that secure enterprise-built, multi, or hybrid cloud (currently Azure and AWS) generative AI applications, throughout the entire application lifecycle. Defender for Cloud reduces risk to cross cloud AI workloads by:
13
+
The Defender Cloud Security Posture Management (CSPM) plan in Microsoft Defender for Cloud provides AI security posture management capabilities that secure enterprise-built, multi, or hybrid cloud (currently Azure and AWS) generative AI applications, throughout the entire application lifecycle. Defender for Cloud reduces risk to cross cloud AI workloads by:
14
14
15
-
-Discover generative AI Bill of Materials (AI BOM), which includes application components, data, and AI artifacts from code to cloud.
15
+
-Discovering generative AI Bill of Materials (AI BOM), which includes application components, data, and AI artifacts from code to cloud.
16
16
- Strengthening generative AI application security posture with built-in recommendations and by exploring and remediating security risks.
17
17
- Using the attack path analysis to identify and remediate risks.
18
18
19
19
:::image type="content" source="media/ai-security-posture/ai-lifecycle.png" alt-text="An image of the development lifecycle that is covered by Defender for Cloud's AI security posture management.":::
20
20
21
-
## Discover generative AI apps within your environment
21
+
## Discovering generative AI apps
22
22
23
23
Defender for Cloud discovers AI workloads and identifies details of your organization's AI BOM. This visibility allows you to identify and address vulnerabilities and protect generative AI applications from potential threats.
24
24
@@ -36,7 +36,7 @@ With these features, Defender for Cloud provides full visibility of AI workloads
36
36
37
37
Defender CSPM provides contextual insights into an organization's AI security posture. You can reduce risks within your AI workloads using security recommendations and attack path analysis.
38
38
39
-
### Explore risks using recommendations
39
+
### Exploring risks using recommendations
40
40
41
41
Defender for Cloud assesses AI workloads and issues recommendations around identity, data security, and internet exposure to identify and prioritize critical security issues in AI workloads.
42
42
@@ -55,7 +55,7 @@ Current IaC AI security checks include:
55
55
- Use Managed Identity for Azure AI Service Accounts
56
56
- Use identity-based authentication for Azure AI Service Accounts
57
57
58
-
### Explore risks with attack path analysis
58
+
### Exploring risks with attack path analysis
59
59
60
60
Attack paths analysis detects and mitigates risks to AI workloads, particularly during grounding (linking AI models to specific data) and fine-tuning (adjusting a pretrained model on a specific dataset to improve its performance on a related task) stages, where data might be exposed.
Copy file name to clipboardExpand all lines: articles/defender-for-cloud/ai-threat-protection.md
+1-3Lines changed: 1 addition & 3 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -33,8 +33,6 @@ Security teams can correlate AI workloads alerts and incidents within the Defend
33
33
34
34
To use the Defender for AI Workloads plan, you must enroll in the limited public preview program by filling out the [registration form](https://aka.ms/D4AI/PublicPreviewAccess).
35
35
36
-
After you fill out the registration form and are accepted into the preview program, you can [onboard your Azure subscription to the preview program](ai-onboarding.md#enable-the-defender-for-ai-workloads-plan).
37
-
38
36
## Related content
39
37
40
-
-[Onboard Defender for AI Workloads (Preview)](ai-onboarding.md)
38
+
After you're accepted into the preview program, you can [onboard Defender for AI Workloads (Preview)](ai-onboarding.md).
Copy file name to clipboardExpand all lines: articles/defender-for-cloud/explore-ai-risk.md
+6-4Lines changed: 6 additions & 4 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -1,19 +1,21 @@
1
1
---
2
-
title: Explore risks to pre-deployed generative AI artifacts
2
+
title: Explore risks to generative AI artifacts before deployment
3
3
description: Learn how to discover potential security risks for your generative AI applications in Microsoft Defender for Cloud.
4
4
ms.topic: how-to
5
-
ms.date: 04/18/2024
5
+
ms.date: 05/02/2024
6
6
# customer intent: As a user, I want to learn how to identify potential security risks for my generative AI applications in Microsoft Defender for Cloud so that I can enhance their security.
7
7
---
8
8
9
-
# Explore risks to pre-deployed generative AI artifacts
9
+
# Explore risks to generative AI artifacts before deployment
10
10
11
-
The Defender CSPM plan in Microsoft Defender for Cloud helps you to improve the security posture of generative AI apps, by identifying vulnerable dependencies in libraries. This article explains how to explore, identify, and remediate security risks for those apps.
11
+
The Defender CSPM plan in Microsoft Defender for Cloud helps you to improve the security posture of generative AI apps, by identifying vulnerabilities in AI artifacts such as container images and code repositories. This article explains how to explore, identify, and remediate security risks for those apps.
12
12
13
13
## Prerequisites
14
14
15
15
- Read about [AI security posture management](ai-security-posture.md).
16
16
17
+
- Learn more about [investigating risks with the cloud security explorer and attack paths](concept-attack-path.md).
18
+
17
19
- You need a Microsoft Azure subscription. If you don't have an Azure subscription, you can [sign up for a free subscription](https://azure.microsoft.com/pricing/free-trial/).
18
20
19
21
- Enable [Defender for Cloud on your Azure subscription](connect-azure-subscription.md).
Copy file name to clipboardExpand all lines: articles/defender-for-cloud/identify-ai-workload-model.md
+4-2Lines changed: 4 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -8,12 +8,14 @@ ms.date: 05/02/2024
8
8
9
9
# Discover generative AI workloads
10
10
11
-
Defender for Cloud provides a comprehensive view of your organization's AI bill of materials (AI BOM). By using the cloud security explorer, you can identify the AI workloads and models that are running in your environment and assess their security posture.
11
+
The Defender Cloud Security Posture Management (CSPM) plan in Microsoft Defender for Cloud provides a comprehensive view of your organization's AI bill of materials (AI BOM). Use instructions in this article to use the cloud security explorer to identify the AI workloads and models that are running in your environment and assess their security posture.
12
12
13
13
## Prerequisites
14
14
15
15
- Read about [AI security posture management](ai-security-posture.md).
16
16
17
+
- Learn more about [investigating risks with the cloud security explorer and attack paths](concept-attack-path.md).
18
+
17
19
- You need a Microsoft Azure subscription. If you don't have an Azure subscription, you can [sign up for a free subscription](https://azure.microsoft.com/pricing/free-trial/).
18
20
19
21
- Enable [Defender for Cloud on your Azure subscription](connect-azure-subscription.md).
@@ -49,4 +51,4 @@ The cloud security explorer can be used to identify generative AI workloads and
49
51
## Next step
50
52
51
53
> [!div class="nextstepaction"]
52
-
> [Explore risks to pre-deployed generative AI artifacts](explore-ai-risk.md)
54
+
> [Explore risks to generative AI artifacts before deployment](explore-ai-risk.md)
0 commit comments