Mods

Policy: Azure > CIS v4.0 > 02 - Common Reference Recommendations > 02.01 - Secrets and Keys > 02.01.01 - Encryption Key Management > 02.01.01.01 - Microsoft Managed Keys (MMK) > 02.01.01.01.01 - Ensure Critical Data is Encrypted with Microsoft Managed Keys (MMK)

Configures auditing against a CIS Benchmark item.

Level: 1

Encryption at Rest provides protection for stored data (at rest). Attacks against data at rest include attempts to obtain physical access to the hardware on which the data is stored, and then compromise the contained data.

Microsoft Managed Keys (MMK) offer simplicity in key management where Microsoft handles key rotation and backup.

Targets

This policy targets the following resource types:

Primary Policy

This policy is used with the following primary policy:

Controls

Setting this policy configures this control:

Policy Specification

Schema Type
string
Default
Per Azure > CIS v4.0 > 02 - Common Reference Recommendations > 02.01.01 - Encryption Key Management > 02.01.01.01 - Microsoft Managed Keys (MMK)
Valid Values [YAML]
  • >-
      Per Azure > CIS v4.0 > 02 - Common Reference Recommendations > 02.01.01 -
      Encryption Key Management > 02.01.01.01 - Microsoft Managed Keys (MMK)
    
  • Skip
    
  • Check: Benchmark using attestation
    

Category

In Your Workspace

Developers