Skip to content

Commit a822b41

Browse files
committed
Genericising the page further
1 parent f24a7c5 commit a822b41

File tree

3 files changed

+17
-25
lines changed

3 files changed

+17
-25
lines changed
Loading
97.7 KB
Loading

articles/security-center/update-regulatory-compliance-packages.md

Lines changed: 17 additions & 25 deletions
Original file line numberDiff line numberDiff line change
@@ -22,11 +22,9 @@ Azure Security Center continually compares the configuration of your resources w
2222

2323
## Overview of compliance packages
2424

25-
Compliance 'packages' are essentially initiatives defined in Azure Policy. To see compliance data mapped as assessments in your dashboard, add a compliance package to your management group or subscription from within the **Security policy** page.
25+
Industry standards, regulatory standards, and benchmarks are represented in Security Center as *compliance packages*. Each package is an initiative defined in Azure Policy. To see compliance data mapped as assessments in your dashboard, add a compliance package to your management group or subscription from within the **Security policy** page. (Learn more about Azure Policy and initiatives in [Working with security policies](tutorial-security-policy.md).)
2626

27-
Adding a compliance package effectively assigns the regulatory compliance initiative to your selected scope. In this way, you can track newly published regulatory initiatives as compliance standards in your dashboard.
28-
29-
When you've onboarded a standard or benchmark, the standard appears in your regulatory compliance dashboard with all associated compliance data mapped as assessments. You can also download summary reports for any of the standards that have been onboarded.
27+
When you've onboarded a standard or benchmark to your selected scope, the standard appears in your regulatory compliance dashboard with all associated compliance data mapped as assessments. You can also download summary reports for any of the standards that have been onboarded.
3028

3129
Microsoft also tracks the regulatory standards themselves and automatically improves its coverage in some of the packages over time. When Microsoft releases new content for the initiative (new policies that map to more controls in the standard), the additional content appears automatically in your dashboard.
3230

@@ -36,9 +34,11 @@ Microsoft also tracks the regulatory standards themselves and automatically impr
3634

3735
## Available packages
3836

39-
You can add standards such as NIST SP 800-53 R4, SWIFT CSP CSCF-v2020, UK Official and UK NHS, Canada Federal PBMM, and Azure CIS 1.1.0 (new), which is a more complete representation of Azure CIS 1.1.0.
37+
You can add standards such as NIST SP 800-53 R4, SWIFT CSP CSCF-v2020, UK Official and UK NHS, Canada Federal PBMM, and Azure CIS 1.1.0 (new) - a more complete representation of Azure CIS 1.1.0.
38+
39+
In addition, you can add **Azure Security Benchmark**, the Microsoft-authored, Azure-specific guidelines for security and compliance best practices based on common compliance frameworks. ([Learn more about Azure Security Benchmark](https://docs.microsoft.com/azure/security/benchmarks/introduction).)
4040

41-
In addition, you can add Azure Security Benchmark, the Microsoft-authored, Azure-specific guidelines for security and compliance best practices based on common compliance frameworks. Additional standards will be supported in the dashboard as they become available.
41+
Additional standards will be supported in the dashboard as they become available.
4242

4343

4444
## Adding a regulatory standard to your dashboard
@@ -57,41 +57,33 @@ The following steps explain how to add a package to monitor your compliance with
5757
> [!TIP]
5858
> We recommend selecting the highest scope for which the standard is applicable so that compliance data is aggregated and tracked for all nested resources.
5959
60-
1. Select standards relevant to you:
60+
1. To add the standards relevant to your organization, click **Add more standards**.
6161

62-
- To update Azure CIS 1.1.0 with new content, select **Update now** alongside it in the Industry & regulatory standards section.
62+
1. From the **Add regulatory compliance standards** page, you can search for packages for any of the available standards. Some of the standards available are:
6363

64-
- Optionally, click **Add more standards** to open the **Add regulatory compliance standards** page. There, you can search manually for packages for any of the available standards. Some of the standards available are:
65-
66-
- **Azure Security Benchmark** ([details here](https://docs.microsoft.com/azure/security/benchmarks/introduction))
67-
- **NIST SP 800-53 R4**
68-
- **SWIFT CSP CSCF-v2020**
69-
- **UKO and UK NHS**
70-
- **Canada PBMM**
64+
- **Azure Security Benchmark**
65+
- **NIST SP 800-53 R4**
66+
- **SWIFT CSP CSCF-v2020**
67+
- **UKO and UK NHS**
68+
- **Canada PBMM**
7169

7270
![Adding regulatory packages to Azure Security Center's regulatory compliance dashboard](./media/update-regulatory-compliance-packages/dynamic-regulatory-compliance-additional-standards.png)
7371

74-
7572
1. From Security Center's sidebar, select **Regulatory compliance** again to go back to the regulatory compliance dashboard.
7673
* Your new standard appears in your list of Industry & regulatory standards.
7774
* If you've added **Azure CIS 1.1.0 (New)**, the original *static* view of your Azure CIS 1.1.0 compliance will also remain alongside it. It may be automatically removed in the future.
7875

7976
> [!NOTE]
8077
> It may take a few hours for a newly added standard to appear in the compliance dashboard.
8178
82-
83-
[![Regulatory compliance dashboard showing old and new Azure CIS](media/update-regulatory-compliance-packages/security-center-dynamic-regulatory-compliance-cis-old-and-new.png)](media/update-regulatory-compliance-packages/security-center-dynamic-regulatory-compliance-cis-old-and-new.png#lightbox)
84-
79+
[![Regulatory compliance dashboard showing old and new Azure CIS](media/update-regulatory-compliance-packages/regulatory-compliance-dashboard-with-asb-small.png)](media/update-regulatory-compliance-packages/regulatory-compliance-dashboard-with-asb.png#lightbox)
8580

8681
## Next steps
8782

88-
In this article, you learned:
89-
90-
* How to **upgrade the standards** shown in your regulatory compliance dashboard to the new *dynamic* packages
91-
* How to **add compliance packages** to monitor your compliance with additional standards.
83+
In this article, you learned how to **add compliance packages** to monitor your compliance with additional standards.
9284

9385
For other related material, see the following articles:
9486

87+
- [Azure Security Benchmark](https://docs.microsoft.com/azure/security/benchmarks/introduction)
9588
- [Security center regulatory compliance dashboard](security-center-compliance-dashboard.md)
96-
- [Working with security policies](tutorial-security-policy.md)
97-
- [Managing security recommendations in Azure Security Center](security-center-recommendations.md) - Learn how to use recommendations in Azure Security Center to help protect your Azure resources.
89+
- [Working with security policies](tutorial-security-policy.md)

0 commit comments

Comments
 (0)