Skip to content

Commit f14cfab

Browse files
authored
Merge pull request #205473 from ElazarK/governance-paid
free in preview
2 parents 68df13f + 0960d79 commit f14cfab

File tree

2 files changed

+12
-4
lines changed

2 files changed

+12
-4
lines changed

articles/defender-for-cloud/governance-rules.md

Lines changed: 10 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ author: bmansheim
66
ms.author: benmansheim
77
ms.service: defender-for-cloud
88
ms.topic: how-to
9-
ms.date: 07/03/2022
9+
ms.date: 07/21/2022
1010
---
1111
# Drive your organization to remediate security recommendations with governance
1212

@@ -28,7 +28,7 @@ You can then review the progress of the tasks by subscription, recommendation, o
2828
|Aspect|Details|
2929
|----|:----|
3030
|Release state:|Preview.<br>[!INCLUDE [Legalese](../../includes/defender-for-cloud-preview-legal-text.md)]|
31-
|Pricing:|Free|
31+
|Pricing:|Free while in preview and will be a paid service after preview|
3232
|Required roles and permissions:|Azure - **Contributor**, **Security Admin**, or **Owner** on the subscription<br>AWS, GCP – **Contributor**, **Security Admin**, or **Owner** on the connector|
3333
|Clouds:|:::image type="icon" source="./media/icons/yes-icon.png"::: Commercial clouds<br>:::image type="icon" source="./media/icons/no-icon.png"::: National (Azure Government, Azure China 21Vianet)<br>:::image type="icon" source="./media/icons/yes-icon.png"::: Connected AWS accounts<br>:::image type="icon" source="./media/icons/yes-icon.png"::: Connected GCP accounts|
3434

@@ -66,6 +66,9 @@ If there are existing recommendations that match the definition of the governanc
6666
- Assign an owner and due date to recommendations that don't already have an owner or due date.
6767
- Overwrite the owner and due date of existing recommendations.
6868

69+
> [!NOTE]
70+
> When you delete or disable a rule, all existing assignments and notifications will remain.
71+
6972
## Manually assigning owners and due dates for recommendation remediation
7073

7174
For every resource affected by a recommendation, you can assign an owner and a due date so that you know who needs to implement the security changes to improve your security posture and when they're expected to do it by. You can also apply a grace period so that the resources that are given a due date don't impact your secure score unless they become overdue.
@@ -111,15 +114,18 @@ You can track the assigned and overdue recommendations in:
111114

112115
The governance report lets you select subscriptions that have governance rules and, for each rule and owner, shows you how many recommendations are completed, on time, overdue, or unassigned.
113116

114-
To review the status of the recommendations in a rule:
117+
> [!NOTE]
118+
> Manual assignments will not appear on this report. To see all assignments by owner, use the Owner tab on the Security Posture page.
119+
120+
**To review the status of the recommendations in a rule**:
115121

116122
1. In **Recommendations**, select **Governance report (preview)**.
117123
1. Select the subscriptions that you want to review.
118124
1. Select the rules that you want to see details about.
119125

120126
You can see the list of owners and recommendations for the selected rules, and their status.
121127

122-
To see the list of recommendations for each owner:
128+
**To see the list of recommendations for each owner**:
123129

124130
1. Select **Security posture**.
125131
1. Select the **Owner (preview)** tab to see the list of owners and the number of overdue recommendations for each owner.

articles/defender-for-cloud/release-notes.md

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -90,6 +90,8 @@ Today's increasing threats to organizations stretch the limits of security perso
9090

9191
Now with the governance experience, security teams can assign remediation of security recommendations to the resource owners and require a remediation schedule. They can have full transparency into the progress of the remediation and get notified when tasks are overdue.
9292

93+
This feature is free while it is in the preview phase.
94+
9395
Learn more about the governance experience in [Driving your organization to remediate security issues with recommendation governance](governance-rules.md).
9496

9597
### Filter security alerts by IP address

0 commit comments

Comments
 (0)