AZ-023 Microsoft Azure

Microsoft Defender for SQL (threat detection) is enabled.

Microsoft Defender for SQL (threat detection) is enabled.

Domain
Microsoft Azure
Area
Database (SQL)
Automated / manual
Automated

Risk if it fails

No DB threat detection = silent attacks.

Defender for SQL flags injection attacks and unusual access. Without it, an active database attack runs unnoticed until customer data appears for sale.

How Tess tests it

1 test — each concludes only on cited evidence.

Microsoft Defender for SQL (threat detection) is enabled.

Automated
Procedure
Confirm Advanced Threat Protection / Defender for SQL is on.

Read-only command

az sql db threat-policy show --resource-group <rg> --server <server> --database <db> 2>/dev/null

More in Microsoft Azure

Want Tess to test AZ-023 against your evidence?

Book a demo