Skip to content

Commit b37cbe8

Browse files
authored
Merge pull request #265490 from ktoliver/206005
[AQ] edit pass: Defender for Cloud security recommendations
2 parents 36c4583 + ef7308a commit b37cbe8

21 files changed

+94
-140
lines changed

articles/defender-for-cloud/includes/defender-for-devops-recommendations.md

Lines changed: 13 additions & 12 deletions
Large diffs are not rendered by default.

articles/defender-for-cloud/recommendations-reference-aws.md

Lines changed: 13 additions & 18 deletions
Original file line numberDiff line numberDiff line change
@@ -1,49 +1,44 @@
11
---
2-
title: Reference table for all recommendations for AWS resources
3-
description: This article lists Microsoft Defender for Cloud's security recommendations that help you harden and protect your AWS resources.
2+
title: Reference table for all security recommendations for AWS resources
3+
description: This article lists all Microsoft Defender for Cloud security recommendations that help you harden and protect your Amazon Web Services (AWS) resources.
44
ms.topic: reference
55
ms.date: 06/27/2023
66
ms.custom: generated
77
---
88

9-
# Security recommendations for AWS resources - a reference guide
9+
# Security recommendations for Amazon Web Services (AWS) resources
1010

11-
This article lists the recommendations you might see in Microsoft Defender for Cloud if you've connected an AWS account from the **Environment settings** page. The recommendations shown in your environment depend on the resources you're protecting and your customized configuration.
11+
This article lists all the recommendations you might see in Microsoft Defender for Cloud if you connect an Amazon Web Services (AWS) account by using the **Environment settings** page. The recommendations that appear in your environment are based on the resources that you're protecting and on your customized configuration.
1212

13-
To learn about how to respond to these recommendations, see
14-
[Remediate recommendations in Defender for Cloud](implement-security-recommendations.md).
13+
To learn about actions that you can take in response to these recommendations, see [Remediate recommendations in Defender for Cloud](implement-security-recommendations.md).
1514

16-
Your secure score is based on the number of security recommendations you've completed. To
17-
decide which recommendations to resolve first, look at the severity of each one and its potential
18-
impact on your secure score.
15+
Your secure score is based on the number of security recommendations you've completed. To decide which recommendations to resolve first, look at the severity of each recommendation and its potential impact on your secure score.
1916

20-
## <a name='recs-aws-compute'></a> AWS Compute recommendations
17+
## <a name='recs-aws-compute'></a>AWS Compute recommendations
2118

2219
[!INCLUDE [asc-recs-aws-compute](../../includes/mdfc/mdfc-recs-aws-compute.md)]
2320

24-
## <a name='recs-aws-container'></a> AWS Container recommendations
21+
## <a name='recs-aws-container'></a>AWS Container recommendations
2522

2623
[!INCLUDE [asc-recs-aws-container](../../includes/mdfc/mdfc-recs-aws-container.md)]
2724

2825
### Data plane recommendations
2926

30-
All the data plane recommendations listed [here](kubernetes-workload-protections.md#view-and-configure-the-bundle-of-recommendations) are supported under AWS after [enabling Azure Policy for Kubernetes](kubernetes-workload-protections.md#enable-kubernetes-data-plane-hardening).
27+
All the [Kubernetes data plane security recommendations](kubernetes-workload-protections.md#view-and-configure-the-bundle-of-recommendations) are supported for AWS after you [enable Azure Policy for Kubernetes](kubernetes-workload-protections.md#enable-kubernetes-data-plane-hardening).
3128

32-
## <a name='recs-aws-data'></a> AWS Data recommendations
29+
## <a name='recs-aws-data'></a>AWS Data recommendations
3330

3431
[!INCLUDE [asc-recs-aws-data](../../includes/mdfc/mdfc-recs-aws-data.md)]
3532

36-
## <a name='recs-aws-identityandaccess'></a> AWS IdentityAndAccess recommendations
33+
## <a name='recs-aws-identityandaccess'></a>AWS IdentityAndAccess recommendations
3734

3835
[!INCLUDE [asc-recs-aws-identityandaccess](../../includes/mdfc/mdfc-recs-aws-identityandaccess.md)]
3936

40-
## <a name='recs-aws-networking'></a> AWS Networking recommendations
37+
## <a name='recs-aws-networking'></a>AWS Networking recommendations
4138

4239
[!INCLUDE [asc-recs-aws-networking](../../includes/mdfc/mdfc-recs-aws-networking.md)]
4340

44-
## Next steps
45-
46-
For related information, see the following:
41+
## Related content
4742

4843
- [Connect your AWS accounts to Microsoft Defender for Cloud](quickstart-onboard-aws.md)
4944
- [What are security policies, initiatives, and recommendations?](security-policy-concept.md)
Lines changed: 7 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
---
2-
title: Reference table for all DevOps recommendations
3-
description: This article lists Microsoft Defender for Cloud's DevOps security recommendations that help you harden and protect your resources.
2+
title: Reference table for all security recommendations for DevOps
3+
description: This article lists all Microsoft Defender for Cloud security recommendations that help you harden and protect your DevOps resources.
44
author: dcurwin
55
ms.service: defender-for-cloud
66
ms.topic: reference
@@ -9,22 +9,19 @@ ms.author: dacurwin
99
ms.custom: generated
1010
---
1111

12-
# Security recommendations for DevOps resources - a reference guide
12+
# Security recommendations for DevOps resources
1313

14-
This article lists the recommendations you might see in Microsoft Defender for Cloud if you've connected an [Azure DevOps](quickstart-onboard-devops.md), [GitHub](quickstart-onboard-github.md), or [GitLab](quickstart-onboard-gitlab.md) environment from the **Environment settings** page. The recommendations shown in your environment depend on the resources you're protecting and your customized configuration.
14+
This article lists the recommendations you might see in Microsoft Defender for Cloud if you connect an [Azure DevOps](quickstart-onboard-devops.md), [GitHub](quickstart-onboard-github.md), or [GitLab](quickstart-onboard-gitlab.md) environment by using the **Environment settings** page. The recommendations that appear in your environment are based on the resources that you're protecting and on your customized configuration.
1515

16-
To learn about how to respond to these recommendations, see
17-
[Remediate recommendations in Defender for Cloud](implement-security-recommendations.md).
16+
To learn about actions that you can take in response to these recommendations, see [Remediate recommendations in Defender for Cloud](implement-security-recommendations.md).
1817

1918
Learn more about [DevOps security](defender-for-devops-introduction.md) benefits and features.
2019

21-
DevOps recommendations do not affect the [Secure score](secure-score-security-controls.md). To prioritize recommendations, consider the number of impacted resources, the total number of findings and the level of severity.
20+
DevOps recommendations don't affect your [secure score](secure-score-security-controls.md). To decide which recommendations to resolve first, look at the severity of each recommendation and its potential impact on your secure score.
2221

2322
[!INCLUDE [devops-recommendations](includes/defender-for-devops-recommendations.md)]
2423

25-
## Next steps
26-
27-
To learn more about recommendations, see the following:
24+
## Related content
2825

2926
- [What are security policies, initiatives, and recommendations?](security-policy-concept.md)
3027
- [Review your security recommendations](review-security-recommendations.md)

articles/defender-for-cloud/recommendations-reference-gcp.md

Lines changed: 12 additions & 17 deletions
Original file line numberDiff line numberDiff line change
@@ -1,49 +1,44 @@
11
---
2-
title: Reference table for all recommendations for GCP resources
3-
description: This article lists Microsoft Defender for Cloud's security recommendations that help you harden and protect your GCP resources.
2+
title: Reference table for all security recommendations for GCP resources
3+
description: This article lists all Microsoft Defender for Cloud security recommendations that help you harden and protect your Google Cloud Platform (GCP) resources.
44
ms.topic: reference
55
ms.date: 06/27/2023
66
ms.custom: generated
77
---
88

9-
# Security recommendations for GCP resources - a reference guide
9+
# Security recommendations for Google Cloud Platform (GCP) resources
1010

11-
This article lists the recommendations you might see in Microsoft Defender for Cloud if you've connected a GCP project from the **Environment settings** page. The recommendations shown in your environment depend on the resources you're protecting and your customized configuration.
11+
This article lists all the recommendations you might see in Microsoft Defender for Cloud if you connect a Google Cloud Platform (GCP) account by using the **Environment settings** page. The recommendations that appear in your environment are based on the resources that you're protecting and on your customized configuration.
1212

13-
To learn about how to respond to these recommendations, see
14-
[Remediate recommendations in Defender for Cloud](implement-security-recommendations.md).
13+
To learn about actions that you can take in response to these recommendations, see [Remediate recommendations in Defender for Cloud](implement-security-recommendations.md).
1514

16-
Your secure score is based on the number of security recommendations you've completed. To
17-
decide which recommendations to resolve first, look at the severity of each one and its potential
18-
impact on your secure score.
15+
Your secure score is based on the number of security recommendations you've completed. To decide which recommendations to resolve first, look at the severity of each recommendation and its potential impact on your secure score.
1916

20-
## <a name='recs-gcp-compute'></a> GCP Compute recommendations
17+
## <a name='recs-gcp-compute'></a>GCP Compute recommendations
2118

2219
[!INCLUDE [asc-recs-gcp-compute](../../includes/mdfc/mdfc-recs-gcp-compute.md)]
2320

24-
## <a name='recs-gcp-container'></a> GCP Container recommendations
21+
## <a name='recs-gcp-container'></a>GCP Container recommendations
2522

2623
[!INCLUDE [asc-recs-gcp-container](../../includes/mdfc/mdfc-recs-gcp-container.md)]
2724

2825
### Data plane recommendations
2926

30-
All the data plane recommendations listed [here](kubernetes-workload-protections.md#view-and-configure-the-bundle-of-recommendations) are supported under GCP after [enabling Azure Policy for Kubernetes](kubernetes-workload-protections.md#enable-kubernetes-data-plane-hardening).
27+
All the [Kubernetes data plane security recommendations](kubernetes-workload-protections.md#view-and-configure-the-bundle-of-recommendations) are supported for GCP after you [enable Azure Policy for Kubernetes](kubernetes-workload-protections.md#enable-kubernetes-data-plane-hardening).
3128

32-
## <a name='recs-gcp-data'></a> GCP Data recommendations
29+
## <a name='recs-gcp-data'></a>GCP Data recommendations
3330

3431
[!INCLUDE [asc-recs-gcp-data](../../includes/mdfc/mdfc-recs-gcp-data.md)]
3532

36-
## <a name='recs-gcp-identityandaccess'></a> GCP IdentityAndAccess recommendations
33+
## <a name='recs-gcp-identityandaccess'></a>GCP IdentityAndAccess recommendations
3734

3835
[!INCLUDE [asc-recs-gcp-identityandaccess](../../includes/mdfc/mdfc-recs-gcp-identityandaccess.md)]
3936

4037
## <a name='recs-gcp-networking'></a> GCP Networking recommendations
4138

4239
[!INCLUDE [asc-recs-gcp-networking](../../includes/mdfc/mdfc-recs-gcp-networking.md)]
4340

44-
## Next steps
45-
46-
For related information, see the following:
41+
## Related content
4742

4843
- [Connect your GCP projects to Microsoft Defender for Cloud](quickstart-onboard-gcp.md)
4944
- [What are security policies, initiatives, and recommendations?](security-policy-concept.md)

0 commit comments

Comments
 (0)