Evaluating the security posture by using benchmarks
In Chapter 5, Designing a Regulatory Compliance Strategy, you learned how to plan and design for creating a strong security posture using Microsoft Defender for Cloud and Azure Policy. In this chapter, you will learn more about the capabilities of Microsoft Defender for Cloud so that you can manage and monitor your security posture while utilizing policy and compliance benchmarks and protecting workloads with Microsoft Defender plans.
This section will focus on the various benchmarks for evaluating the security posture within Microsoft Defender for Cloud and Azure Policy initiatives. Before evaluating these benchmarks further, however, you should understand what is meant by cloud security posture management (CSPM).
CSPM is the method for monitoring and managing these defenses to audit, assess, and identify potential vulnerabilities and threats that may be within our infrastructure. This constant process allows you to address...