Microsoft Defender for Cloud
Cloud and workloads

Test the Defender for Storage data security features

In brief

The guide now explains that EICAR is a harmless standardized test file, clarifies the initial Sensitive Data Discovery scan wording, and fixes a link formatting issue. Metadata was also updated.

What Defender admins need to know

No administrator action is required; use the revised guidance when testing Defender for Storage.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

Test the Defender for Storage data security features

After you enable Microsoft Defender for Storage, you can test the service and run a proof of concept. ThisTesting the service helps you familiarize yourself with itsDefender for Storage features and validate that its advanced security capabilities effectively protect your storage accounts by generating real security alerts. This guide walks you through testing various aspects of the security coverage offered by Defender for Storage.

There are three main components to test:

Upload an EICAR test file to simulate malware upload

An EICAR test file is a harmless standardized file that anti-malware software recognizes as malware for testing purposes. To simulate a malware upload using an EICAR test file, follow these steps:

  1. Prepare for the EICAR test file:

    1. Enable Defender for Storage on the storage account with the Sensitivity Data Discovery feature enabled.

    Sensitive data discovery scans for sensitive information within the first 24 hours. ThisThe initial scan occurs when you enable itSensitive Data Discovery at the storage account level or create a new storage account under a subscription protected by this featureSensitive Data Discovery at the subscription level. Following this initial scan, the service scans for sensitive information every seven days from the time of enablement.

Learn more about: