SecurityRegulatoryCompliance

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Tables Index


Reference for SecurityRegulatoryCompliance table in Azure Monitor Logs.

Attribute Value
Category -
Basic Logs Eligible ✗ No (source)
Supports Transformations ✓ Yes (source)
Ingestion API Supported ✗ No
Azure Monitor Tables Reference View Documentation

Contents

Schema (22 columns)

Source: Azure Monitor documentation

Column Name Type Description
_BilledSize real The record size in bytes
_IsBillable string Specifies whether ingesting the data is billable. When _IsBillable is false ingestion isn't billed to your Azure account
_ResourceId string A unique identifier for the resource that the record is associated with
_SubscriptionId string A unique identifier for the subscription that the record is associated with
AssessedResourceId string The ID of the assessed resource
ComplianceControl string The name of regulatory compliance control
ComplianceStandard string The name of compliance standard
FailedResources int The number of resources that failed this assessment
IsSnapshot bool Indicates whether the data was exported as part of a snapshot when 'true', or streamed in real-time when 'false'.
PassedResources int The number of resources that passed this assessment
Properties dynamic The complete set of metadata.
RecommendationId string The ID of the assessed recommendation
RecommendationLink string A link for more details on the assessment result
RecommendationName string Recommendation display name
RegulatoryComplianceSubscriptionId string The subscription ID of the assessed resource
ResourceProviderType string Resource provider type of the assessed resource
SkippedResources int The number of resources that passed this assessment
SourceSystem string The type of agent the event was collected by. For example, OpsManager for Windows agent, either direct connect or Operations Manager, Linux for all Linux agents, or Azure for Azure Diagnostics
State string The assessment state
TenantId string The Log Analytics workspace ID
TimeGenerated datetime The (UTC) date and time the assessment was generated
Type string The name of the table

Schema References

Official Microsoft Learn documentation for field/column information:

Solutions (5)

This table is used by the following solutions:


Content Items Using This Table (9)

Analytic Rules (4)

In solution AzureSecurityBenchmark:

Analytic Rule Selection Criteria
Azure Security Benchmark Posture Changed

In solution CybersecurityMaturityModelCertification(CMMC)2.0: ComplianceStandard == "NIST-SP-800-171-R2"
State == "Failed"

Analytic Rule
CMMC 2.0 Level 1 (Foundational) Readiness Posture
CMMC 2.0 Level 2 (Advanced) Readiness Posture

In solution NISTSP80053:

Analytic Rule Selection Criteria
NIST SP 800-53 Posture Changed

Workbooks (5)

In solution AzureSecurityBenchmark: ComplianceStandard == "Microsoft-cloud-security-benchmark"
State == "Failed"

Workbook
AzureSecurityBenchmark

In solution CybersecurityMaturityModelCertification(CMMC)2.0: ComplianceStandard == "NIST-SP-800-171-R2"

Workbook
CybersecurityMaturityModelCertification_CMMCV2

In solution MaturityModelForEventLogManagementM2131:

Workbook Selection Criteria
MaturityModelForEventLogManagement_M2131

In solution NISTSP80053: ComplianceStandard == "NIST-SP-800-53-R4"

Workbook
NISTSP80053

In solution ThreatAnalysis&Response: ComplianceStandard == "NIST-SP-800-53-R4"
State == "Failed"

Workbook
DynamicThreatModeling&Response

Selection Criteria Summary (5 criteria, 6 total references)

References by type: 0 connectors, 6 content items, 0 ASIM parsers, 0 other parsers.

Selection Criteria Connectors Content Items ASIM Parsers Other Parsers Total
ComplianceStandard == "NIST-SP-800-171-R2"
State == "Failed"
- 2 - - 2
ComplianceStandard == "Microsoft-cloud-security-benchmark"
State == "Failed"
- 1 - - 1
ComplianceStandard == "NIST-SP-800-171-R2" - 1 - - 1
ComplianceStandard == "NIST-SP-800-53-R4" - 1 - - 1
ComplianceStandard == "NIST-SP-800-53-R4"
State == "Failed"
- 1 - - 1
Total 0 6 0 0 6

ComplianceStandard

Value Connectors Content Items ASIM Parsers Other Parsers Total
NIST-SP-800-171-R2 - 3 - - 3
NIST-SP-800-53-R4 - 2 - - 2
Microsoft-cloud-security-benchmark - 1 - - 1

State

Value Connectors Content Items ASIM Parsers Other Parsers Total
Failed - 4 - - 4

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Tables Index