last sync: 2024-Nov-25 18:54:24 UTC

Microsoft Managed Control 1698 - Information System Monitoring | Individuals Posing Greater Risk | Regulatory Compliance - System and Information Integrity

Azure BuiltIn Policy definition

Source Azure Portal
Display name Microsoft Managed Control 1698 - Information System Monitoring | Individuals Posing Greater Risk
Id 31b752c1-05a9-432a-8fce-c39b56550119
Version 1.0.0
Details on versioning
Versioning Versions supported for Versioning: 0
Built-in Versioning [Preview]
Category Regulatory Compliance
Microsoft Learn
Description Microsoft implements this System and Information Integrity control
Additional metadata Name/Id: ACF1698 / Microsoft Managed Control 1698
Category: System and Information Integrity
Title: Information System Monitoring | Individuals Posing Greater Risk
Ownership: Customer, Microsoft
Description: The organization implements Defined by Microsoft Major Applications of individuals who have been identified by HR and engineering groups as posing an increased level of risk.
Requirements: In the case where Azure identifies an individual as posing an increased level of risk, that individual’s access is revoked. The Security Response Team takes special interest in data generated by existing monitoring solutions to identify any malicious actions the individual may attempt. The Security Response Team responds to requests by HR and engineering groups to take emergency action on high risk accounts, such as emergency account disablement. The Security Response Team also maintains auditable events of account activity that can be used in Security Response Team investigations.
Mode Indexed
Type Static
Preview False
Deprecated False
Effect Fixed
audit
RBAC role(s) none
Rule aliases none
Rule resource types IF (2)
Microsoft.Resources/subscriptions
Microsoft.Resources/subscriptions/resourceGroups
Compliance
The following 1 compliance controls are associated with this Policy definition 'Microsoft Managed Control 1698 - Information System Monitoring | Individuals Posing Greater Risk' (31b752c1-05a9-432a-8fce-c39b56550119)
Control Domain Control Name MetadataId Category Title Owner Requirements Description Info Policy#
op.pl.1 Risk analysis op.pl.1 Risk analysis 404 not found n/a n/a 70
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type
Spain ENS 175daf90-21e1-4fec-b745-7b4c909aa94c Regulatory Compliance GA BuiltIn
History none
JSON compare n/a
JSON
api-version=2021-06-01
EPAC