Skip to content

Commit d6e98c9

Browse files
Update recommendations-reference-devops.md
1 parent ccc959c commit d6e98c9

File tree

1 file changed

+1
-7
lines changed

1 file changed

+1
-7
lines changed

articles/defender-for-cloud/recommendations-reference-devops.md

Lines changed: 1 addition & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -107,12 +107,6 @@ DevOps recommendations don't affect your [secure score](secure-score-security-co
107107

108108
**Severity**: High
109109

110-
### [(Preview) Azure DevOps organizations should limit the number of project collection administrators](https://portal.azure.com/#view/Microsoft_Azure_Security/GenericRecommendationDetailsBlade/assessmentKey/9f4a17ee-7a02-4978-b968-8c36b74ac8e3)
111-
112-
**Description**: Project Collection Administrators (PCAs) in Azure DevOps have extensive permissions, including the ability to manage and modify all projects within the collection, access all resources, and configure organizational policies. Limiting the number of Project Collection Administrators to no more than six enhances security by reducing the attack surface, adhering to the principle of least privilege, improving monitoring and accountability, simplifying security management, minimizing the risk of privilege escalation, and ensuring consistent application of security policies. Each additional person in the administrator role increases the attack surface for the entire organization, especially if an administrator's account is compromised.
113-
114-
**Severity**: High
115-
116110
## GitHub recommendations
117111

118112
### [GitHub organizations should not make action secrets accessible to all repositories](https://portal.azure.com/#view/Microsoft_Azure_Security/GenericRecommendationDetailsBlade/assessmentKey/6331fad3-a7a2-497d-b616-52672057e0f3)
@@ -315,4 +309,4 @@ DevOps recommendations don't affect your [secure score](secure-score-security-co
315309
## Related content
316310

317311
- [Learn about security recommendations](security-policy-concept.md)
318-
- [Review security recommendations](review-security-recommendations.md)
312+
- [Review security recommendations](review-security-recommendations.md)

0 commit comments

Comments
 (0)