Microsoft Defender for Cloud
Cloud and workloads

Manage the Microsoft Cloud Security Benchmark in Microsoft Defender for Cloud

In brief

The page now uses the full Microsoft Cloud Security Benchmark name, adds clearer section headings and anchors, clarifies the enforcement timing and recommendation freshness interval, and explains that standard assignments in the selected scope align with the chosen recommendation setting.

What Defender admins need to know

Administrators can use the revised guidance to manage MCSB recommendations, parameters, and policy conflicts; no action is required.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

Manage MCSB recommendations in Defender for Cloud

Microsoft Defender for Cloud assesses resources against security policies and standards in Defender for Cloud. By default, when you onboard cloud accounts to Defender for Cloud, the Microsoft Cloud Security Benchmark (MCSB) standard is enabled. Defender for Cloud starts assessing the security posture of your resource against controls in the MCSB standard, and issues security recommendations based on the assessments.

This article describes how you can manage recommendations provided by MCSB.

Before you startPrerequisites

There are two specific roles in Defender for Cloud that can view and manage security elements:

  1. Select Save.

The enforce setting takes effect immediately, but recommendations will update based on their freshness interval (up to 12 hours).

Modify additional recommendation parameters

You might want to configure additional parameters for some recommendations. For example, diagnostic logging recommendations have a default retention period of one day. You can change thatthe default retention period value.

In the recommendation details page, the Additional parameters column indicates whether a recommendation has associated additional parameters.

If you want to revert changes, select Reset to default to restore the default value for the recommendation.

Identify potential conflicts between recommendation settings

Potential conflicts can arise when you have multiple assignments of standards with different values.

  1. To identify conflicts in additional parameters, in Add, select Additional parameters conflict > Has conflict to identify any conflicts.
  2. If conflicts are found, in Recommendation settings, select the required value, and save.

All standard assignments onin the selected scope will beare aligned with the new setting,value you selected in Recommendation settings, resolving the conflict.

Next steps

This page explained security policies. For related information, see the following pages:Related information: