Ensure that Microsoft Defender for Cloud Standard Tier (also known as enhanced security plan) is active in order to enable threat detection for networks and virtual machines, provide threat intelligence, anomaly detection, and behavior analytics within the protected subscription. You can configure the list of Azure resource types for which you want to enable Microsoft Defender for Cloud Standard Tier within the rule settings, in your TrendAI Vision One™ Cloud Risk Management account.
Microsoft Defender for Cloud has two pricing tiers: the Free Tier, which provides basic security features, and the Standard Tier, which offers advanced security capabilities. The key difference between these two tiers is that the Free Tier offers basic security features at no cost, while the Standard Tier (Enhanced Security Plan) provides comprehensive, advanced security features and is billed based on resource usage. Enabling the Standard Tier for Microsoft Defender for Cloud allows for better security assessment with threat detection provided by the Microsoft Security Response Center (MSRC), advanced security policies, adaptive application control, network threat detection, and regulatory compliance management.
Audit
To determine if the Standard Tier (Enhanced Security Plan) is enabled within the Microsoft Defender for Cloud settings, perform the following operations:
Remediation / Resolution
To enable Microsoft Defender for Cloud Standard Tier for your Azure cloud resources, perform the following operations:
References
- Azure Official Documentation
- Microsoft Defender for Cloud documentation
- What is Microsoft Defender for Cloud?
- Microsoft Defender for Cloud pricing
- Azure Command Line Interface (CLI) Documentation
- az account list
- az account set
- az security pricing list
- az security pricing create