Mods

Policy: Azure > CIS v4.0 > 07 - Management and Governance > 07.01 - Logging and Monitoring > 07.01.02 - Monitoring using Activity Log Alerts > 07.01.02.02 - Ensure that Activity Log Alert exists for Delete Policy Assignment

Configures auditing against a CIS Benchmark item.

Level: 1

Create an activity log alert for the Delete Policy Assignment event.

Monitoring for delete policy assignment events gives insight into changes done in "azure policy - assignments" and can reduce the time it takes to detect unsolicited changes.

Targets

This policy targets the following resource types:

Primary Policy

This policy is used with the following primary policy:

Controls

Setting this policy configures this control:

Policy Specification

Schema Type
string
Default
Per Azure > CIS v4.0 > 07 - Management and Governance > 07.01 - Logging and Monitoring > 07.01.02 - Monitoring using Activity Log Alerts
Valid Values [YAML]
  • >-
      Per Azure > CIS v4.0 > 07 - Management and Governance > 07.01 - Logging and
      Monitoring > 07.01.02 - Monitoring using Activity Log Alerts
    
  • Skip
    
  • Check: Benchmark
    

Category

In Your Workspace

Developers