last sync: 2024-Nov-25 18:54:24 UTC

Microsoft Managed Control 1690 - Information System Monitoring | System-Wide Intrusion Detection System | Regulatory Compliance - System and Information Integrity

Azure BuiltIn Policy definition

Source Azure Portal
Display name Microsoft Managed Control 1690 - Information System Monitoring | System-Wide Intrusion Detection System
Id a2567a23-d1c3-4783-99f3-d471302a4d6b
Version 1.0.0
Details on versioning
Versioning Versions supported for Versioning: 0
Built-in Versioning [Preview]
Category Regulatory Compliance
Microsoft Learn
Description Microsoft implements this System and Information Integrity control
Additional metadata Name/Id: ACF1690 / Microsoft Managed Control 1690
Category: System and Information Integrity
Title: Information System Monitoring - System-Wide Intrusion Detection System
Ownership: Customer, Microsoft
Description: The organization connects and configures individual intrusion detection tools into an information system-wide intrusion detection system.
Requirements: Azure assets upload logs to a central repository managed by C+AI Security. Azure Security and the Security Response Team generate consolidated reports from this data, providing system-wide intrusion detections. Additionally, a combination of detection via the logging and monitoring pipeline and alerting infrastructure and fast response address the risk of intrusion. This includes the use of event forwarding tools, security incident and event management tools, vulnerability scanning and reporting tools, and anti-malware systems. These systems feed into central monitoring which alerts the Security Response Team for any events that need further investigation for central investigation or the service teams directly for alerts that are autorouted based on metadata available in Service Tree.
Mode Indexed
Type Static
Preview False
Deprecated False
Effect Fixed
audit
RBAC role(s) none
Rule aliases none
Rule resource types IF (2)
Microsoft.Resources/subscriptions
Microsoft.Resources/subscriptions/resourceGroups
Compliance
The following 1 compliance controls are associated with this Policy definition 'Microsoft Managed Control 1690 - Information System Monitoring | System-Wide Intrusion Detection System' (a2567a23-d1c3-4783-99f3-d471302a4d6b)
Control Domain Control Name MetadataId Category Title Owner Requirements Description Info Policy#
op.mon.1 Intrusion detection op.mon.1 Intrusion detection 404 not found n/a n/a 50
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type
Spain ENS 175daf90-21e1-4fec-b745-7b4c909aa94c Regulatory Compliance GA BuiltIn
History none
JSON compare n/a
JSON
api-version=2021-06-01
EPAC