Control: Azure > CIS v1.2 > 7 - Virtual Machines
Covers security recommendations for Azure Compute.
Primary Policies
The following policies can be used to configure this control:
- 7 - Virtual Machines > 7.01 - Ensure Virtual Machines are utilizing Managed Disks (Scored)
- 7 - Virtual Machines > 7.02 - Ensure that 'OS and Data' disks are encrypted with CMK (Scored)
- 7 - Virtual Machines > 7.03 - Ensure that 'Unattached disks' are encrypted with CMK (Scored)
- 7 - Virtual Machines > 7.04 - Ensure that only approved extensions are installed (Not Scored)
- 7 - Virtual Machines > 7.04 - Ensure that only approved extensions are installed (Not Scored) > Attestation
- 7 - Virtual Machines > 7.05 - Ensure that the latest OS Patches for all Virtual Machines are applied (Not Scored)
- 7 - Virtual Machines > 7.05 - Ensure that the latest OS Patches for all Virtual Machines are applied (Not Scored) > Attestation
- 7 - Virtual Machines > 7.06 - Ensure that the endpoint protection for all Virtual Machines is installed (Not Scored)
- 7 - Virtual Machines > 7.06 - Ensure that the endpoint protection for all Virtual Machines is installed (Not Scored) > Attestation
- 7 - Virtual Machines
- 7 - Virtual Machines > Maximum Attestation Duration
Category
In Your Workspace
Developers
- tmod:@turbot/azure-cisv1-2#/control/types/s07
- tmod:@turbot/cis#/control/categories/cis
- turbot graphql controls --filter "controlTypeId:tmod:@turbot/azure-cisv1-2#/control/types/s07"
Get Controls
Control Type URI
Category URI
GraphQL
CLI