Microsoft Defender for Cloud
Cloud and workloads

Review the software inventory in Defender for Cloud

In brief

The article now links to prerequisites, changes the section heading to “Browse the software inventory,” and documents exporting filtered inventory to CSV and saving queries in Resource Graph Explorer.

What Defender admins need to know

Administrators can verify required Defender plans before starting and use documented options to export or reuse inventory queries.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

Review the software inventory

  • Defender for Cloud shows the integrated software inventory on the Inventory page, summarizing software running on resources connected to Defender for Cloud.
  • To query and retrieve inventory data at scale, use Azure Resource Graph (ARG). For deep custom insights, use Kusto Query Language (KQL).

This article explains how to review the software inventory. Before you begin, review the prerequisites to ensure the required Defender plans are enabled.

Prerequisites

Browse the software inventory

  1. In Defender for Cloud, select Inventory.
  2. If prerequisites are in place, the Installed applications filter shows you a list of software deployed in the environment.

Export the inventory

You can export filtered inventory data to a CSV file or save queries in Resource Graph Explorer for later use.

  1. To save filtered inventory in CSV form, select Download CSV report.
  2. To save a query in Resource Graph Explorer, select Open a query. When you're ready to save a query, select Save as and in Save query, specify a query name and description, and whether the query is private or shared.