You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/defender-for-cloud/update-regulatory-compliance-packages.md
+47-22Lines changed: 47 additions & 22 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -1,8 +1,8 @@
1
1
---
2
2
title: The regulatory compliance dashboard
3
-
description: Learn how to add and remove regulatory standards from the regulatory compliance dashboard in Defender for Cloud
3
+
description: Learn how to assign and remove regulatory standards from the regulatory compliance dashboard in Defender for Cloud
4
4
ms.topic: how-to
5
-
ms.date: 06/18/2023
5
+
ms.date: 09/11/2023
6
6
ms.custom: ignite-2022
7
7
---
8
8
@@ -26,24 +26,25 @@ Microsoft tracks the regulatory standards themselves and automatically improves
26
26
## What regulatory compliance standards are available in Defender for Cloud?
27
27
28
28
By default:
29
+
29
30
- Azure subscriptions get the **Microsoft cloud security benchmark** assigned. This is the Microsoft-authored, cloud specific guidelines for security and compliance best practices based on common compliance frameworks. [Learn more about Microsoft cloud security benchmark](/security/benchmark/azure/introduction).
30
31
- AWS accounts get the **AWS Foundational Security Best Practices** standard assigned. This is the AWS-specific guideline for security and compliance best practices based on common compliance frameworks.
31
32
- GCP projects get the **GCP Default** standard assigned.
32
33
33
-
If a subscription, account, or project has *any* Defender plan enabled, additional standards can be applied.
34
+
If a subscription, account, or project has *any* Defender plan enabled, more standards can be applied.
34
35
35
36
**Available regulatory standards**:
36
37
37
38
| Standards for Azure subscriptions | Standards for AWS accounts | Standards for GCP projects |
@@ -70,12 +71,15 @@ The following steps explain how to add a package to monitor your compliance with
70
71
71
72
To add standards to your dashboard:
72
73
73
-
- The subscription must have Defender for Cloud's enhanced security features enabled
74
+
- The subscription must have one or more [Defender plans enabled](connect-azure-subscription.md#enable-all-paid-plans-on-your-subscription).
74
75
- The user must have owner or policy contributor permissions
75
76
77
+
> [!NOTE]
78
+
> It may take a few hours for a newly added standard to appear in the compliance dashboard.
79
+
76
80
### Add a standard to your Azure subscriptions
77
81
78
-
1. From Defender for Cloud's menu, select **Regulatory compliance** to open the regulatory compliance dashboard. Here you'll see the compliance standards assigned to the currently selected subscriptions.
82
+
1. From Defender for Cloud's menu, select **Regulatory compliance** to open the regulatory compliance dashboard. Here you can see the compliance standards assigned to the currently selected subscriptions.
79
83
80
84
1. From the top of the page, select **Manage compliance policies**.
81
85
@@ -95,26 +99,47 @@ To add standards to your dashboard:
95
99
96
100
1. From Defender for Cloud's menu, select **Regulatory compliance** again to go back to the regulatory compliance dashboard.
97
101
98
-
Your new standard appears in your list of Industry & regulatory standards.
102
+
The selected standard appears on the dashboard.
99
103
100
-
> [!NOTE]
101
-
> It may take a few hours for a newly added standard to appear in the compliance dashboard.
:::image type="content" source="media/update-regulatory-compliance-packages/assign-standard-aws-from-list.png" alt-text="Screenshot that shows where to select a standard to assign." lightbox="media/update-regulatory-compliance-packages/assign-standard-aws-from-list.png":::
104
116
105
-
### Add a standard to your AWS accounts
117
+
1. At the prompt, select **Yes**. The standard is assigned to your AWS account.
106
118
107
-
To add regulatory compliance standards on AWS accounts:
119
+
:::image type="content" source="media/update-regulatory-compliance-packages/assign-standard-aws.png" alt-text="Screenshot of the prompt to assign a regulatory compliance standard to the AWS account." lightbox="media/update-regulatory-compliance-packages/assign-standard-aws.png":::
120
+
121
+
1. From Defender for Cloud's menu, select **Regulatory compliance** again to go back to the regulatory compliance dashboard.
122
+
123
+
The selected standard appears on the dashboard.
124
+
125
+
### Assign a standard to your GCP projects
126
+
127
+
To assign regulatory compliance standards on GCP projects:
108
128
109
129
1. Navigate to **Environment settings**.
110
-
1. Select the relevant account.
130
+
1. Select the relevant GCP project.
111
131
1. Select **Standards**.
112
-
1. Select **Add** and choose **Standard**.
113
-
1. Choose a standard from the drop-down menu.
114
-
1. Select **Save**.
132
+
1. Select the three dots alongside an unassigned standard and select **Assign standard**.
133
+
134
+
:::image type="content" source="media/update-regulatory-compliance-packages/assign-standard-gcp-from-list.png" alt-text="Screenshot that shows where to select a GCP standard to assign." lightbox="media/update-regulatory-compliance-packages/assign-standard-gcp-from-list.png":::
135
+
136
+
1. At the prompt, select **Yes**. The standard is assigned to your GCP project.
115
137
116
-
:::image type="content" source="media/update-regulatory-compliance-packages/add-aws-regulatory-compliance.png" alt-text="Screenshot of adding regulatory compliance standard to AWS account." lightbox="media/update-regulatory-compliance-packages/add-aws-regulatory-compliance.png":::
138
+
:::image type="content" source="media/update-regulatory-compliance-packages/assign-standard-gcp.png" alt-text="Screenshot of the prompt to assign a regulatory compliance standard to the GCP project." lightbox="media/update-regulatory-compliance-packages/assign-standard-gcp.png":::
139
+
140
+
1. From Defender for Cloud's menu, select **Regulatory compliance** again to go back to the regulatory compliance dashboard.
117
141
142
+
The selected standard appears on the dashboard.
118
143
119
144
## Remove a standard from your dashboard
120
145
@@ -131,7 +156,7 @@ To remove a standard:
131
156
132
157
The security policy page opens. For the selected subscription, it shows the default policy, the industry and regulatory standards, and any custom initiatives you've created.
133
158
134
-
:::image type="content" source="./media/update-regulatory-compliance-packages/remove-standard.png" alt-text="Remove a regulatory standard from your regulatory compliance dashboard in Microsoft Defender for Cloud.":::
159
+
:::image type="content" source="./media/update-regulatory-compliance-packages/remove-standard.png" alt-text="Remove a regulatory standard from your regulatory compliance dashboard in Microsoft Defender for Cloud." lightbox="media/update-regulatory-compliance-packages/remove-standard.png":::
135
160
136
161
1. For the standard you want to remove, select **Disable**. A confirmation window appears.
0 commit comments