Interpreting compliance scores and recommending actions to resolve issues or improve security
As stated in the previous section, Microsoft Defender for Cloud provides ways for you to review the compliance of Azure, AWS, and GCP resources. Using Azure Arc for non-Azure resources on-premises will also bring information and recommendations on the security posture of those compute, network, and storage resources.
Reviewing the Regulatory compliance dashboard and the levels of compliance against resources will provide insights into company security. These insights and recommendations can be used to improve company security and prepare for compliance audits.
In Microsoft Defender for Cloud, you are provided with a view of the sections of the standard. Sections that are compliant are represented with a green checkmark, non-compliant sections are given a red “x,” and areas that are not relevant to your current environment are grayed out. Figure 5.6 provides a screenshot...