AZ-023 Microsoft Azure
Microsoft Defender for SQL (threat detection) is enabled.
Microsoft Defender for SQL (threat detection) is enabled.
- Domain
- Microsoft Azure
- Area
- Database (SQL)
- Automated / manual
- Automated
Risk if it fails
No DB threat detection = silent attacks.
Defender for SQL flags injection attacks and unusual access. Without it, an active database attack runs unnoticed until customer data appears for sale.
How Tess tests it
1 test — each concludes only on cited evidence.
Microsoft Defender for SQL (threat detection) is enabled.
Automated- Procedure
- Confirm Advanced Threat Protection / Defender for SQL is on.
Read-only command
az sql db threat-policy show --resource-group <rg> --server <server> --database <db> 2>/dev/null More in Microsoft Azure
Want Tess to test AZ-023 against your evidence?
Book a demo