Compliance
Monitor and assess your Azure environment against regulatory frameworks
At risk
Across 5 frameworks
Open Gaps
30gaps
from 8 root causes - the frameworks share checks, so one fix closes several.
Top leverage
AUTH-001 (MFA on Global Admins) moves 4 frameworks and 6 controls in one fix.
Fix first
One row per failing check, ranked by how many frameworks it moves.
SeverityCheckFrameworksControls
- criticalAUTH-001Global Administrators without MFACISSOC 2ISO 27001NIST CSF6
- highGUEST-001Guest Users with Privileged Directory RolesCISSOC 2NIST CSF4
- highNET-001No Inbound SSH Open to InternetCISISO 27001SFI5
- highRBAC-001Excessive Subscription-Level Owner AssignmentsCISSOC 2NIST CSF4
- highKV-001Key Vaults Have Soft Delete EnabledCISISO 270013
- criticalCRED-001App Registrations with Credentials Expiring Within 7 DaysSOC 2ISO 270013
- highSTG-002Storage accounts allow public blob accessCISSFI3
- mediumCA-002MFA not required for Azure managementCISNIST CSF2
Frameworks
FrameworkScorePassedFailedNot assessed
- 81%68164
CIS Azure Foundations Benchmark
2.1
- 74%51186
SOC 2 Type II
2017
- 79%62165
ISO 27001:2022
2022
- 86%71123
NIST Cybersecurity Framework
2.0
- 71%44188
Microsoft Secure Future Initiative
2025
