Microsoft Security Exposure Management
Vulnerabilities and exposure

Prerequisites and support in Microsoft Security Exposure Management

In brief

The documentation now states that Defender for Cloud with CSPM and Microsoft Defender Vulnerability Management must be enabled for full dashboard value. It also specifies that the service is available only in the public cloud, not national or sovereign clouds.

What Defender admins need to know

Enable the listed products and verify that deployments are in a supported public-cloud environment.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

  • Microsoft Defender suite licenses
  • Other qualifying licenses as specified in the integration and licensing documentation

Environmental requirements

The following products must be enabled to get full value from the dashboard:

  • Defender for Cloud with CSPM (Cloud Security Posture Management) capabilities enabled.
  • Microsoft Defender Vulnerability Management (MDVM) — standalone or as part of Defender for Endpoint P2.

External data connectors (Preview)

External data connectors are currently in public preview with separate consumption-based pricing. During the preview phase, use of data connectors is free. Once generally available, there will be consumption-based costs for each non-Microsoft data connector based on the number of assets retrieved from connected security tools.

Regional and tenant requirements

Microsoft Security Exposure Management is available in Public Cloud only. It's not available in national/sovereign clouds (US Gov, China Gov, or other sovereign clouds).

All data is processed within the Microsoft Defender XDR portal infrastructure. Ensure your tenant meets the standard requirements for Defender portal access.

Permissions