Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊
Reference for SecurityRegulatoryCompliance table in Azure Monitor Logs.
| Attribute | Value |
|---|---|
| Category | - |
| Basic Logs Eligible | ✗ No (source) |
| Supports Transformations | ✓ Yes (source) |
| Ingestion API Supported | ✗ No |
| Lake-Only Ingestion | ✗ No |
| Azure Monitor Tables Reference | View Documentation |
Source: Azure Monitor documentation
| Column Name | Type | Description |
|---|---|---|
| _BilledSize | real | The record size in bytes |
| _IsBillable | string | Specifies whether ingesting the data is billable. When _IsBillable isfalseingestion isn't billed to your Azure account |
| _ResourceId | string | A unique identifier for the resource that the record is associated with |
| _SubscriptionId | string | A unique identifier for the subscription that the record is associated with |
| AssessedResourceId | string | The ID of the assessed resource |
| ComplianceControl | string | The name of regulatory compliance control |
| ComplianceStandard | string | The name of compliance standard |
| FailedResources | int | The number of resources that failed this assessment |
| IsSnapshot | bool | Indicates whether the data was exported as part of a snapshot when 'true', or streamed in real-time when 'false'. |
| PassedResources | int | The number of resources that passed this assessment |
| Properties | dynamic | The complete set of metadata. |
| RecommendationId | string | The ID of the assessed recommendation |
| RecommendationLink | string | A link for more details on the assessment result |
| RecommendationName | string | Recommendation display name |
| RegulatoryComplianceSubscriptionId | string | The subscription ID of the assessed resource |
| ResourceProviderType | string | Resource provider type of the assessed resource |
| SkippedResources | int | The number of resources that passed this assessment |
| SourceSystem | string | The type of agent the event was collected by. For example,OpsManagerfor Windows agent, either direct connect or Operations Manager,Linuxfor all Linux agents, orAzurefor Azure Diagnostics |
| State | string | The assessment state |
| TenantId | string | The Log Analytics workspace ID |
| TimeGenerated | datetime | The (UTC) date and time the assessment was generated |
| Type | string | The name of the table |
Official Microsoft Learn documentation for field/column information:
This table is used by the following solutions:
In solution AzureSecurityBenchmark:
| Analytic Rule | Selection Criteria |
|---|---|
| Azure Security Benchmark Posture Changed |
In solution CybersecurityMaturityModelCertification(CMMC)2.0: ComplianceStandard == "NIST-SP-800-171-R2"State == "Failed"
| Analytic Rule |
|---|
| CMMC 2.0 Level 1 (Foundational) Readiness Posture |
| CMMC 2.0 Level 2 (Advanced) Readiness Posture |
In solution NISTSP80053:
| Analytic Rule | Selection Criteria |
|---|---|
| NIST SP 800-53 Posture Changed |
In solution AzureSecurityBenchmark: ComplianceStandard == "Microsoft-cloud-security-benchmark"State == "Failed"
| Workbook |
|---|
| AzureSecurityBenchmark |
In solution CybersecurityMaturityModelCertification(CMMC)2.0: ComplianceStandard == "NIST-SP-800-171-R2"
| Workbook |
|---|
| CybersecurityMaturityModelCertification_CMMCV2 |
In solution MaturityModelForEventLogManagementM2131:
| Workbook | Selection Criteria |
|---|---|
| MaturityModelForEventLogManagement_M2131 |
In solution NISTSP80053: ComplianceStandard == "NIST-SP-800-53-R4"
| Workbook |
|---|
| NISTSP80053 |
In solution ThreatAnalysis&Response: ComplianceStandard == "NIST-SP-800-53-R4"State == "Failed"
| Workbook |
|---|
| DynamicThreatModeling&Response |
References by type: 0 connectors, 6 content items, 0 ASIM parsers, 0 other parsers.
| Selection Criteria | Connectors | Content Items | ASIM Parsers | Other Parsers | Total |
|---|---|---|---|---|---|
ComplianceStandard == "NIST-SP-800-171-R2"State == "Failed" |
- | 2 | - | - | 2 |
ComplianceStandard == "Microsoft-cloud-security-benchmark"State == "Failed" |
- | 1 | - | - | 1 |
ComplianceStandard == "NIST-SP-800-171-R2" |
- | 1 | - | - | 1 |
ComplianceStandard == "NIST-SP-800-53-R4" |
- | 1 | - | - | 1 |
ComplianceStandard == "NIST-SP-800-53-R4"State == "Failed" |
- | 1 | - | - | 1 |
| Total | 0 | 6 | 0 | 0 | 6 |
| Value | Connectors | Content Items | ASIM Parsers | Other Parsers | Total |
|---|---|---|---|---|---|
NIST-SP-800-171-R2 |
- | 3 | - | - | 3 |
NIST-SP-800-53-R4 |
- | 2 | - | - | 2 |
Microsoft-cloud-security-benchmark |
- | 1 | - | - | 1 |
| Value | Connectors | Content Items | ASIM Parsers | Other Parsers | Total |
|---|---|---|---|---|---|
Failed |
- | 4 | - | - | 4 |
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊