last sync: 2024-Sep-19 17:51:32 UTC

Microsoft Managed Control 1081 - Information Sharing | Regulatory Compliance - Access Control

Azure BuiltIn Policy definition

Source Azure Portal
Display name Microsoft Managed Control 1081 - Information Sharing
Id 3867f2a9-23bb-4729-851f-c3ad98580caf
Version 1.0.0
Details on versioning
Versioning Versions supported for Versioning: 0
Built-in Versioning [Preview]
Category Regulatory Compliance
Microsoft Learn
Description Microsoft implements this Access Control control
Additional metadata Name/Id: ACF1081 / Microsoft Managed Control 1081
Category: Access Control
Title: Information Sharing - User Discretion
Ownership: Customer, Microsoft
Description: The organization: Facilitates information sharing by enabling authorized users to determine whether access authorizations assigned to the sharing partner match the access restrictions on the information for not allowing information sharing circumstances where user discretion is required; This control is not applicable in the information system.
Requirements: Per Microsoft corporate and Azure security policies, Azure personnel are not allowed to share Azure data or customer content outside the security boundary and thus do not make discretionary sharing decisions. Unless approved by the customer, Azure personnel do not have access to unencrypted customer data or resources.
Mode Indexed
Type Static
Preview False
Deprecated False
Effect Fixed
audit
RBAC role(s) none
Rule aliases none
Rule resource types IF (2)
Microsoft.Resources/subscriptions
Microsoft.Resources/subscriptions/resourceGroups
Compliance Not a Compliance control
Initiatives usage none
History none
JSON compare n/a
JSON
api-version=2021-06-01
EPAC